How widespread, really?
Posted Sep 20, 2002 13:39 UTC (Fri) by
nas (subscriber, #17)
Parent article:
That OpenSSL Worm
I think the press is slightly exaggerating the spread of this worm. Read
the story and it sounds like a Unix version of Code Red. When Code Red was
in full force I saw tons of bogus requests in our server's access logs.
When I heard about the OpenSSL worm I immediately setup an iptables logging rule on one of our machines to watch for it. I haven't seen a single packet
on UDP port 2002.
I'm not saying Unix is not vulnerable to the same types of security problems as Windows. Unix servers need compliant people to maintain them.
(
Log in to post comments)