Archive for October, 2008

Trick or Treat: A Halloween Peering Surprise

October 31, 2008 by Craig Labovitz

Yesterday, tens of thousands of Sprint and Cogent customers got an early Halloween surprise. At 4pm EDT, Sprint and Cogent terminated their direct peering relationship.
The below graph shows traffic from the perspective of 25 tier2 ISPs around the world. All of these ISPs are direct customers of either Sprint or Cogent. And all lost transit [...]

Read More

Morris Worm to MS08-067 - 20 Years of Evolution

October 29, 2008 by Danny McPherson

Sunday, November 2, 2008 marks 20 years since the Morris Worm, oft referred to as The Great Worm, was released by Robert Tappan Morris (RTM). Estimates suggested the worm, exploiting buffer overflow vulnerabilities in BSD-derived unix systems, infected ~10% of the Internet’s hosts at the time, which encompassed anywhere from 80k total systems by [...]

Read More

EstDomains, Inc. Whacked by ICANN

October 29, 2008 by Danny McPherson

Update: Having just completed my daily reader run, I saw Kreb’s talked about this on his Secuirty Fix blog in great detail this morning, it’s worth the read…
———-
As the game of whack-a-mole continues, ICANN upped the action this week by terminating the registrar accreditation of EstDomains, Inc., in a notification of termination letter to EstDomains [...]

Read More

More USB Keys and Malcode

October 27, 2008 by Jose Nazario

We recently installed a wireless AV system from Teq AV. One of the things they give you is a set of USB keys with the software on it to drive the laptop. Turns out the USB keys have malcode on them. Another one of those situations!
Here’s a quick scan of one of the USB [...]

Read More

MS08-067: Server Service Vulnerabilities Redux and Wormability

October 24, 2008 by Jose Nazario

Yesterday was all abuzz about a new vulnerability patch from Microsoft, released out of their normal schedule of Patch Tuesday. MS08-067: Vulnerability in Server Service Could Allow Remote Code Execution (958644) was released at 1pm US Eastern to address very major issues. Everyone should review the patch, do some testing, and update ASAP. We’re hearing [...]

Read More