[ale] RPC worms: coming to Linux?

Bob Toxen bob at verysecurelinux.com
Mon Feb 2 20:13:51 EST 2004


On Mon, Feb 02, 2004 at 06:34:55PM -0500, Jim Philips wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1

> Gerhard Eschelbeck of security firm Qualys is predicting some new "super 
> worms" that will exploit RPC and be independent of OS. How real is the 
> threat? And what can Linux users do to protect themselves?
One such worm was produced a few years ago.

Realistically, since Linux is far more secure than Windows and the average
Linux systems has fewer open ports than Windoze (and a hardened Linux
system has is pretty immune to attack) this is far less of a risk to Linux
than Windows.  Qualys is peddling FUD.

> The report is here:

> http://www.techworld.com/news/index.cfm?fuseaction=displaynews&NewsID=959

Bob Toxen
bob at verysecurelinux.com               [Please use for email to me]
http://www.verysecurelinux.com        [Network&Linux/Unix security consulting]
http://www.realworldlinuxsecurity.com [My book:"Real World Linux Security 2/e"]
Quality Linux & UNIX security and SysAdmin & software consulting since 1990.

"Microsoft: Unsafe at any clock speed!"
   -- Bob Toxen 10/03/2002
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.2.3 (GNU/Linux)

> iD8DBQFAHt6fmqVh/g13CaoRArxBAJ9sDF+WpMHxpOkpGwX0DqY0NnWUOwCfQdG6
> sheBy8e/9AlpipCXM6EBDlU=
> =Ov91
> -----END PGP SIGNATURE-----
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://www.ale.org/mailman/listinfo/ale



More information about the Ale mailing list