From
|
"SilveRo" <copyright@tin.it>
|
Date
|
Sun, 17 Aug 2003 19:42:05 +0200
|
Subject
|
[hackmeeting] DCOM worm
|
Da cnn.com:
--------------------------
Computer experts said starting at 12:01 a.m. local time Saturday, infected
computers that have not cleaned up the virus would in effect turn into a
legion of zombies instructed to repeatedly call up a Microsoft Web site that
houses the software patch. If enough traffic flooded the network, the site
could be rendered unreachable and computer users would be unable to access
the patch.
But the exploiters of the Microsoft flaw made a mistake themselves. The worm
instructed computers to call up http://windowsupdate.com -- which is an
incorrect address for reaching the actual Microsoft Web site that houses the
software patch. Although Microsoft has long redirected those who visited
that incorrect address to the real site --
http://windowsupdate.microsoft.com -- the company disabled the automatic
redirection Thursday in preparation for the onslaught of infected computers.
--------------------------
Non capisco cmq perchè cazzo attaccare windowsupdate.... il creatore del
worm non poteva semplicemente scegliere come bersaglio www.microsoft.com?
Tanto se il sito di windowsupdate era ddossato, ms avrebbe messo la patch da
qualche altra parte, col link visibile su microsoft.com....
Indubbiamente bravo come programmatore, ma un po' di buon senso ci voleva da
parte del creatore del worm....
=P
SilveRo
_______________________________________________
hackmeeting mailing list
hackmeeting@kyuzz.org
http://lists.kyuzz.org/mailman/listinfo/hackmeeting