Code Newbie
News     Forums     Search     Members     Sign Up    

My Code Newbie
Username

Password

Articles/Snippets
ASP Classic
ASP.NET
C
C#
C++
HTML / CSS
Java
Javascript
Linux / BSD
Perl
PHP
Python
Ruby
SQL
VB 6
VB.NET

C.N. Friends
  Planet Rome

Link to Us!
Code Newbie
  Code Newbie
    forums

Go Back   Code Forums > Code Newbie > Lounge

Reply
 
LinkBack Thread Tools Display Modes
Old 01-29-2003, 12:03 PM   #1 (permalink)
technobard
Centurion Nova Prime
 
technobard's Avatar
 
Join Date: May 2002
Location: Oak Park, IL (USA)
Posts: 285
technobard is on a distinguished road
SQL Server Worm -- Is It Just Me....

Is it just me or am I missing something. Some script starts scanning the 'net looking for port 1433 (default SQL Server port). If it finds it, it tries to connect based on an empty default password. Then it proceeds to reek havoc. Why are all these servers out there with SQL Server exposed to the internet? There is never any reason to have direct access to a database over the internet. Never any good reason anyway.
technobard is offline   Reply With Quote
Old 01-29-2003, 02:54 PM   #2 (permalink)
anon
Guest
 
Posts: n/a
True, having ports open that you dont use is very dangerous, but the patch was hard to apply and I believe you had to order a CD to fix it so it's part M$s fault for making it faulty and for the patch being a bit hard to apply, all in all it's just a combination of things but it's pissing me off.... Even UUNet was hit hard
  Reply With Quote
Old 01-29-2003, 04:25 PM   #3 (permalink)
sde
Moderator
 
sde's Avatar
 
Join Date: May 2002
Location: us.ca
Posts: 4,489
sde is on a distinguished road
err .. i dont' think you had to order a cd to fix it.

technoboard, .. it's because of all those windows admins who like to run asp/iis/mssql , .. they don't know any better =)

well, the 2 that i know don't have a choice, .. the company requires windows for everything. they didn't have any problems though because they applied the patch when it came out.
sde is offline   Reply With Quote
Old 01-30-2003, 10:46 AM   #4 (permalink)
technobard
Centurion Nova Prime
 
technobard's Avatar
 
Join Date: May 2002
Location: Oak Park, IL (USA)
Posts: 285
technobard is on a distinguished road
Yeah, some saps don't have a choice. My point though is that if you make only port 80 available through the firewall, the webserver handles connecting to the database via asp/php/jsp/whatever. The guy connecting to a web page doesn't have to connect directly to the database. The fact that so many sites were hit points to a bigger problem. Database security patches shouldn't be ignored, but if you can't see the database in the first place, there is a lot less to worry about.
technobard is offline   Reply With Quote
Old 01-30-2003, 11:24 AM   #5 (permalink)
sde
Moderator
 
sde's Avatar
 
Join Date: May 2002
Location: us.ca
Posts: 4,489
sde is on a distinguished road
good point , . . there are definately needs to access remote databases over the internet though , .. in which case you would have to open that port.

bottom line is that if you use MS products, you better make sure you check for updates often and apply them.
sde is offline   Reply With Quote
Old 01-30-2003, 02:21 PM   #6 (permalink)
Ilya020
Techno Rat
 
Ilya020's Avatar
 
Join Date: Jan 2003
Location: San Diego
Posts: 559
Ilya020 is on a distinguished road
Send a message via AIM to Ilya020
Quote:
Originally posted by Vlad902
I believe you had to order a CD to fix it so it's part M$s fault for making it faulty and for the patch being a bit hard to apply,
WTF are you talking about?
The patch was available from Microsoft.com (I think)

Ilya
__________________
> SELECT * FROM users WHERE clue > 0
0 rows returned
Ilya020 is offline   Reply With Quote
Old 01-30-2003, 02:53 PM   #7 (permalink)
anon
Guest
 
Posts: n/a
technoboard: Alot of servers seem locked up so people just reboot them and it fixes the problem and they didn't know they were infected O_O
  Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
New to SQL and databases rmill9681 Everything SQL ( MySQL, MSSQL, DB2, Postgre, Oracle, etc...) 3 09-09-2004 08:31 AM
Specifying SMTP server for PHP mail() Epsilon PHP 2 03-18-2004 12:20 AM


All times are GMT -8. The time now is 09:06 AM.


Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.0.0 RC8





Copyright © 2000-2008, Milano Interactive
Web Hosting provided by Portal 360 Web Hosting