icon Get the most out of Surmunity, read our tips here! Need an interesting blog to read? You've got to read the Surpass Blog! | Welcome! Please register to access all of our features.

» Surpass Web Hosting Forums » Discussions » All Things Techy » Site Maintenance » Recent XML-RPC Worm Attacks

Site Maintenance Program updates, securing your website, creating backups.

Reply
 
LinkBack Thread Tools Search this Thread
Old February 23rd, 2006, 12:59 AM   #1 (permalink)
Marketing Maven
Surpass Staff
 
Kayla's Avatar
 
Joined in May 2003
Lives in Orlando
24,749 posts
Gave thanks: 946
Thanked 806 times
Recent XML-RPC Worm Attacks

We have blocked the 'common' request used by the xml-rpc worm at the network core. We noticed these requests starting to show up on our Network IDS Monitor before the buzz about the worm came about. We put a filter into place which will mitigate the attack. At this time we actually have a number of requests blocked so far, currently it's 8,618. So, it's safe to say the worm is a heavy populator even though most news sites claim it's low scale. With all of the hosts out there with old installs of Mambo (popular target) on shared servers (and doing nothing about it) that worsens the effects by far.
__________________
Follow Surpass on Twitter and Facebook
Check out the Surpass Blog



Kayla is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old March 4th, 2006, 4:44 PM   #2 (permalink)
Surpass Fan
Seasoned Poster
 
Turnip's Avatar
 
Joined in Sep 2004
32 posts
Gave thanks: 2
Thanked 3 times
Not quite..

I have one site running Mambo, and two running Joomla...

All three have apparently been attacked in the last three days; they all return parse errors (which is the classic symptom).

I'm going about upgrading everything at the moment, with fingers and toes crossed...but your message was posted back on the 23rd of February. Today's the 4th of March...so the worm's still getting through.
Turnip is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On