[Date Prev][Date Next] [Thread Prev][Thread Next]
[Thread Index]
[Date Index]
[Author Index]
Re: New Santy-Worm attacks *all* PHP-skripts
- From: "Ronny Vaningh" <ronny netrusion com>
- To: fedora-legacy-list redhat com
- Subject: Re: New Santy-Worm attacks *all* PHP-skripts
- Date: Mon, 27 Dec 2004 09:05:31 +0100 (CET)
Hi
I informed isc.sans.org about this on saturday morning but they failed to
explicitly mention that it wasn't only phpBB related
However setting register_globals to Off doesn't protect you completly
The script could be modified to use fopen to download the "sploit"
http://www.php-space.info/webmaster-news-3.php
There is some "less heavy" exploiting in the wild seen using this
[Date Prev][Date Next] [Thread Prev][Thread Next]
[Thread Index]
[Date Index]
[Author Index]