KBD

Keith Devens .com

Thursday, December 4, 2008 Flag waving
*What in our history together makes you think I'm capable of something like that?* – Owen Wilson's character in Shanghai Knights
← Lorem IpsumCute doggie →

Daily link icon Tuesday, January 28, 2003

Microsoft's own servers were infected with Slammer

Via Cory, it turns out that Microsoft's own servers were infected with Slammer. That's awesome.

← Lorem IpsumCute doggie →

Comments XML gif

Oliver Tseng (http://http:/www.otweb.com/blog) wrote:

Yeah, I was talking with my brother last night about it. He's in tech support for SQL Server with MS. Pretty funny that MS themselves don't even apply their own patches.

∴ Oliver Tseng | 28-Jan-2003 10:08am est | http://http:/www.otweb.com/blog | #1339

Adam V (http://flangy.com) wrote:

"That the company has SQL servers on the desktop is not surprising, he added. Many of its developers run the database on their PCs, and other test machines have vulnerable databases installed to replicate customer networks. Devenuti didn't know how the worm got into the system to affect those servers, however."

Everyone has a TON of machines in their office; the average for developers is probably above 3, and that's the average. Lots of these will end up being test machines with different OS/software configurations, some of which are used rarely. You'll end up with old machines still connected to the network under a desk, because you got newer machines but never got around to cleaning it off and removing it.

Any one of these upteen machines on the network is of course a security risk if it hasn't been patched. And configuration testing makes this even more of a nightmare. (You have to patch and recreate your disk images.)

Not that any of this is an excuse, but there are always going to be plenty of people (and not just at Microsoft of course) who need to run server apps for development or testing who aren't admins with a "keep it bulletproof" attitude.

And buffer overrun bugs that allow arbitrary code to execute are going to be around for quite a while too, unfortunately.

The usual vector for virus hits inside companies that are otherwise firewalled is employees hooking up laptops to the corporate network. Like downloading some mail at home in the morning then reading it at lunch--POW! Code Red infection even if your outside firewall blocks attachments.

∴ Adam V | 28-Jan-2003 6:12pm est | http://flangy.com | #1340

M. Bean wrote:

I still have to acknowledge the hilarity of Microsoft being hit by an exploit they had a patch already issued to prevent against. Obviously it's going to happen, just on sheer quantity and probability, as Adam points out above, but it's still damn funny. I got a chuckle, at least.

∴ M. Bean | 28-Jan-2003 10:46pm est | #1342

Feel free to post a comment below. Please see my comment policy.

Formatting Rules (No HTML):

  • **bold**, *italic*, _underlined_, --strikeout--
  • "text"="url" creates a link, and URLs are auto-highlighted
  • Blockquote: Like e-mail, begin paragraph with > (greater-than sign)
  • Lists: begin paragraph with *,-, or + (unordered), or # (ordered)
  • Code block: ?!code:language=perl|php|sql|javascript|etc.{\n}...{\n}?!/code

:
(will be your IP address if blank)
: (optional)
(Will not be shown on site)

: (optional)
:

December 2008
SunMonTueWedThuFriSat
 123456
78910111213
14151617181920
21222324252627
28293031 



RSS feed RSS feed for Keith's Weblog
Atom feed Atom feed for Keith's Weblog
Weblog archive
Recent comments
  on 4 posts

Recent comments XML

Girls, please don't get breast implants

I have 34 A breast but at 22 years​old they seem to be growing again​which ...

76.64.120.153: Dec 3, 10:00am

Perl 6 1.0 in March?

Doh, my mistake. I'm aware of the​relation between Parrot and Rakudo​but I'...

Keith: Dec 2, 1:03am

Free image hosting sites

Well, TinyPic has this in its​FAQ:

> Images and videos is in​your accoun...

Keith: Dec 1, 1:13am

Join a NameValueCollection into a querystring in C#

Well with a lamba expression, this​is what I came up​with:

?!code:csharp...

Gustaf Lindqvist: Nov 30, 4:38pm

Generated in about 0.171s.

(Used 8 db queries)

mobile phone