Previously undiscovered flaw used to attack Army Web site
Published:
19 March 2003 y., Wednesday
A computer intruder armed with a secret, particularly effective attack tool recently took control of an Army Web server. Both Microsoft and the CERT Coordination Center released hastily-prepared warnings about the vulnerability that led to the attack on Monday. But it was a disturbingly successful attack, experts say, because the intruder found and exploited a flaw that took security researchers completely by surprise.
IT’S UNKNOWN WHAT Army computer was attacked, how significant a target it was, or what the intruder’s intentions were. But the exploit was sophisticated and well designed, and it was alarmingly successful, said Russ Cooper, security researcher for TruSecure Corp. The company learned of the attack through sources in the U.S. military last Tuesday, Cooper said.
“We believe the Army was being targeted,” Cooper said. “We don’t believe anybody else has been targeted by this.” Another source that several Web sites with “.mil” domain names have recently been targeted with the same attack method.
Microsoft’s director of security assurance, Steve Lipner, confirmed that several customers were hit with the attack last week, but he refused to identify them. Lipner said about 100 employees worked “around the clock” last week, and through the weekend, to develop an emergency fix.
Šaltinis:
MSNBC
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.
The most popular articles
Software company announced new structure_ of it_s business.
more »
Email churn surges into the tens of billions
more »
Experts say the Nimda virus spreads through e-mail, vulnerable servers, and the Internet via open network sharing features and altered Web pages.
more »
Hackers have begun attacking Web sites connected to Afghanistan's Taliban rulers and to other Islamic nations
more »
Corporate altruism is replacing shock as some tech companies offer free services and bandwidth to businesses affected by last week's attacks.
more »
In an apparent response to terrorist attacks on America, a notorious hacker known as "Fluffi Bunni" defaced potentially tens of thousands of high-profile Web sites, replacing their home pages with a rant about religion, capitalism, and violence.
more »
U.S. consumers are more likely to revisit Web sites that are fast loading, customizable and more informative than those that offer rich media or content delivery to wireless handsets, according to research by Jupiter Media Metrix.
more »
Entertainment industry lobbyists say programmers and open-source activists should not be alarmed by a controversial proposal to embed copy-protection controls in nearly all PCs and consumer electronic devices.
more »
Homegrown instant messaging start-up Odigo, Inc. has scored a lucrative deal to develop and power "MTV Messenger", a new IM communications tool for MTV-owned Web sites in Europe.
more »
search.lt presents newest links
more »
A South Korean Internet portal has filed a complaint with fair trade regulators, alleging Microsoft is shutting out competition by tying a range of application software into its new Windows operating system.
more »