Threat Level: green Handler on Duty: Xavier Mertens

SANS ISC: InfoSec Handlers Diary Blog - Internet Storm Center Diary 2007-07-25 InfoSec Handlers Diary Blog


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

APEWS.ORG: Please contact us

Published: 2007-07-25
Last Updated: 2007-07-25 17:15:20 UTC
by Kevin Liston (Version: 1)
0 comment(s)

Please pardon the interruption.  If you manage the APEWS list, please contact us.

 

just a few more details. APEWS appears to use our "top sources" list http://isc.incidents.org/ipsascii.html as a blocklist. This list is an unfiltered list of sources for which we received a lot of reports. It is not supposed to be used as a blocklist as it is bound to include false positives. In addition, APEWS turns these /32 listings into /17 blocks, and they appear to violate our "Creative Commons Share-Alike License". Sadly, all other attempts to contact them have failed.

APEWS may be a useful "anti-spam" list if you do not mind losing a lot of valid e-mail as well. For example, right now, it appears to block the entire AT&T network.

Keywords:
0 comment(s)

BIND Updates Available

Published: 2007-07-25
Last Updated: 2007-07-25 03:08:02 UTC
by Kevin Liston (Version: 1)
0 comment(s)

The Internet Systems Consortium has announced updates to BIND that address CVE-2007-2926.

From their announcements:

BIND 9.4.1-P1 can be downloaded from

ftp://ftp.isc.org/isc/bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz

The PGP signature of the distribution is at

ftp://ftp.isc.org/isc/bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz.asc
ftp://ftp.isc.org/isc/bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz.sha256.asc
ftp://ftp.isc.org/isc/bind9/9.4.1-P1/bind-9.4.1-P1.tar.gz.sha512.asc
 

BIND 9.3.4-P1 can be downloaded from

ftp://ftp.isc.org/isc/bind9/9.3.4-P1/bind-9.3.4-P1.tar.gz

The PGP signature of the distribution is at

ftp://ftp.isc.org/isc/bind9/9.3.4-P1/bind-9.3.4-P1.tar.gz.asc
ftp://ftp.isc.org/isc/bind9/9.3.4-P1/bind-9.3.4-P1.tar.gz.sha256.asc
ftp://ftp.isc.org/isc/bind9/9.3.4-P1/bind-9.3.4-P1.tar.gz.sha512.asc
 
 
BIND 9.2.8-P1 can be downloaded from

ftp://ftp.isc.org/isc/bind9/9.2.8-P1/bind-9.2.8-P1.tar.gz

The PGP signature of the distribution is at

ftp://ftp.isc.org/isc/bind9/9.2.8-P1/bind-9.2.8-P1.tar.gz.asc
ftp://ftp.isc.org/isc/bind9/9.2.8-P1/bind-9.2.8-P1.tar.gz.sha256.asc
ftp://ftp.isc.org/isc/bind9/9.2.8-P1/bind-9.2.8-P1.tar.gz.sha512.asc
 
 
BIND 9.5.0a6 can be downloaded from

ftp://ftp.isc.org/isc/bind9/9.5.0a6/bind-9.5.0a6.tar.gz

The PGP signature of the distribution is at

ftp://ftp.isc.org/isc/bind9/9.5.0a6/bind-9.5.0a6.tar.gz.asc
ftp://ftp.isc.org/isc/bind9/9.5.0a6/bind-9.5.0a6.tar.gz.sha256.asc
ftp://ftp.isc.org/isc/bind9/9.5.0a6/bind-9.5.0a6.tar.gz.sha512.asc
 
These signatures were generated with the ISC public key, which is
available at <http://www.isc.org/about/openpgp/pgpkey2006.txt>
Keywords:
0 comment(s)
Diary Archives