Santy Worm
Recently, golem has been peppered with attacks by the Santy Worm, which exploits a vulnerability in phpBB 2.x.
Those who are interested in such things, can read the actual exploit code (four Perl scripts fetched by the worm via HTTP, and then executed on the victim’s webserver). I’m curious how long that site will stay up. Even if the site’s owner were uncooperative, I would have thought that his upstream would have blackholed it by now.
Posted by distler at January 3, 2005 3:12 PM