There was an interesting issue with the Code-Red and the like.

There were some Cisco routers that were using IIS for easy web configuration
of the router. So there were admins that had all the patches on there
servers, but the router was compromised. This was a big factor in  the
spread of the worm.

So it was entirely possible to be running a server of another OS besides MS
and having been hit.

Ben Johansen - http://www.pcforge.com
-Authorized WiTango Reseller
 http://www.pcforge.com/WitangoGoodies.htm
-Authorized Alt-N Reseller
 http://www.pcforge.com/AltN.htm

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] Behalf Of Aaron
Sent: Tuesday, June 10, 2003 5:54 PM
To: [EMAIL PROTECTED]
Subject: RE: [SAtalk] Really OT: Microsoft buys out RAV


> They are more of an annoyance and can easily be thwarted with
> a compotent admin that keeps up with his security updates.
> It's the inside jobs that are the kickers.  Those are the
> serious threat.  It's all fun. :)

I think that's the long and short of it right there.  Any OS can be secure
just so long as you keep up to date with all the released patches.  *nix
systems get security patches more often than MS, I've heard, but for the
most part I'd wager that *nix admins are more vigilant in keeping up to
date.

Code Red, Nimda, etc etc wouldn't have been as bad if the people running
those boxes had bothered to apply the patches that had been out for months
in advance.

By way of example, consider how much easier life would be if all the brain
dead admins (MS and *nix alike) running open-relay systems would take the
time to close those up.  Spam levels would drop and the open-relay
blacklists would be empty. :)



-------------------------------------------------------
This SF.net email is sponsored by:  Etnus, makers of TotalView, The best
thread debugger on the planet. Designed with thread debugging features
you've never dreamed of, try TotalView 6 free at www.etnus.com.
_______________________________________________
Spamassassin-talk mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/spamassassin-talk



-------------------------------------------------------
This SF.net email is sponsored by:  Etnus, makers of TotalView, The best
thread debugger on the planet. Designed with thread debugging features
you've never dreamed of, try TotalView 6 free at www.etnus.com.
_______________________________________________
Spamassassin-talk mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/spamassassin-talk

Reply via email to