phpbb and sql errors

Today´s Diary

If you have more information or corrections regarding our diary, click here to contact us.

Published: 2008-12-03,
Last Updated: 2008-12-03 19:57:33 UTC
by Andre L. (Version: 2)
0 comment(s)

Well it was about time we got around to updating the ISC Poll.  I came up with the current poll after reading Lenny's great diary post on "Tips to responding to a DDoS attack".  So that being said please do participate in the poll, the results should prove to be interesting in quantifying how many organizations suffer from these sorts of attacks.

Direct link to the poll

http://isc.sans.org/poll.html?pollid=235

 

Some other interesting reports/statistics on Denial of Service attacks can be found at the links below. (feel free to submit other links at https://isc.sans.org/contact.html )

Arbor networks blog post (to see the full report it may require divulging your email to a sales guy)

http://asert.arbornetworks.com/2008/11/2008-worldwide-infrastructure-security-report/

http://www.shadowserver.org/wiki/pmwiki.php?n=Stats.DDos

http://www.shadowserver.org/wiki/pmwiki.php?n=Stats.DDoSHistorical

 

0 comment(s)
Published: 2008-12-03,
Last Updated: 2008-12-03 10:38:18 UTC
by Stephen Hall (Version: 1)
1 comment(s)

VMWare have today released a security advisory, and updated another.

- VMSA-2008-0019 (new advisory)

http://lists.vmware.com/pipermail/security-announce/2008/000046.html

This impacts :

  • VMware Workstation 6.0.5 and earlier
  • VMware Workstation 5.5.8 and earlier
  • VMware Player 2.0.5 and earlier
  • VMware Player 1.0.8 and earlier
  • VMware Server 1.0.9 and earlier
  • VMware ESX(i) 3.5 and 3.0.2


- VMSA-2008-0017.2 (updated advisory)

http://lists.vmware.com/pipermail/security-announce/2008/000047.html

VMWare have added ESX 3.5 patch information after release of patches on 2nd Decemeber 2008.

Keywords:
1 comment(s)
Published: 2008-12-03,
Last Updated: 2008-12-03 07:23:16 UTC
by Stephen Hall (Version: 1)
0 comment(s)

Our carbon based RSS news reader known as Roseman has alerted us to the availability of a new Java release. Sun Java 6.0 Update 11 is now available!

The release notes are available for you enjoyment, and Sun describe the release as "This release contains fixes for one or more security vulnerabilities."

Roseman also suggests that you check the settings in the "Java Control Panel" just in case the settings you have chosen have been reset by the release.

Thanks to the other readers who submitted the news of the update too!

Keywords:
0 comment(s)
Published: 2008-12-02,
Last Updated: 2008-12-03 07:10:22 UTC
by Deborah Hale (Version: 2)
0 comment(s)

Details are still sketchy as to the cause of a failure overnight of the Sonicwall License Manager Server.  We are receiving reports from Sonicwall users that the server "reset" (meaning invalidated) the licenses on all of their email security products. The customers are reporting that this is causing them to be unable to login to their own systems.  It is reported that the support calls are not being answered and are going straight to voicemail. 

It appears that Sonic Wall users received an email overnight indicating that the Email Security licenses have been reset and says that the filtering will not be working.  The email recommended that the customer contact Tech Support (which could be why the calls are going straight to voicemail).  One of our readers who is also a Sonic Wall customer sent us this information from correspondence with Sonic Wall : "The issue is on our backend server who stores the registrations, some ES appliances got licences resetted. The exact cause is still being analized with high priority. In those cases entering the mysonicwall credentials or uploading file solve the issue. Kind Regards Ivan"

So if you are a Sonic Wall customer and you haven't discovered it yet, you may very well have reduced protection. If the firewalls cannot login and verify licensing, the subscription services (content filtering, intrusion prevention, gateway AV) stop working.

Derek, one of our readers and a Sonic Wall customer using the Sonic Wall content filtering has verified that he is now able to access sites that should be getting blocked. Which means schools, businesses, etc that are counting on Sonic Wall to filter for them are sorely disappointed today.

We will update you if anything else pops up on this.


Update 1:  It appears that this problem may be affecting firewalls as well. It is being reported that firewall services have stopped and that spam, viruses, and other bad things are flowing in without a hitch.

 Update 2:  SonicWall have published a support article to help resolve the issue on their support site.

0 comment(s)

If you have more information or corrections regarding our diary, click here to contact us.

Diary Archive

DateAuthorTitle
2008-12-03Stephen Hall Sun Java 6.0 Update 11 is now available
2008-12-03Stephen Hall VMware security advisories
2008-12-03Andre L. New ISC Poll! Has your organization suffered a DDoS (Distributed Denial of Service) attack in the last year?
2008-12-02Deborah Hale Sonicwall License Manager Failure
2008-12-01Jason Lam Call for volunteers - Web Honeypot Project
2008-12-01Jason Lam Input filtering and escaping in SQL injection mitigation
2008-11-29Pedro Bueno Possible Mumbai Scams?
2008-11-29Pedro Bueno Ubuntu users: Time to update!
2008-11-26Patrick Nolan MS - new malware using an ms08-067 exploit gained momentum
2008-11-25Andre L. OS X Dns Changers part three
Complete Archive
Search Diaries:

Featured Event

Latest Reading Room Papers

Document Metadata, the Silent Killer...
Data carving Concepts
IOSMap: TCP and UDP Port Scanning on Cisco IOS Platforms
Mining for Malware - There's Gold in Them Thar Proxy Logs!
.NET Framework Rootkits: Backdoors inside your Framework

Poll

Has your organization suffered a DDoS (Distributed Denial of Service) attack in the last year?
No, we have not been attacked in the last year.
Yes, we have been attacked only once in the last year.
Yes, we have been attacked between 2-5 times in the last year.
Yes, we have been attacked between 6-10 times in the last year.
Yes, we have been attacked between 11-20 times in the last year.
Yes, we have been attacked between 21-30 times in the last year.
Yes, we have been attacked between 31- 40 times in the last year.
Yes, we have been attaked more then 40 times in the last year.
see results

Trends

trends more details

World Map

Worldmap