We received a note from a reader who wanted to remain anonymous that the MS09-039 vulnerability is actively exploited in the wild. To remind you, this vulnerability affects servers with the WINS service installed. The patch fixes two vulnerabilities. We do not have any technical information yet. However, the DShield graph shows a relatively high increase in targets for port 42 (see http://isc.sans.org/port.html?port=42): If you have some technical information or manage to acquire network traffic for this port (especially if coming from outside) please let us know. -- |
Bojan 402 Posts ISC Handler Aug 18th 2009 |
Thread locked Subscribe |
Aug 18th 2009 1 decade ago |
Sign Up for Free or Log In to start participating in the conversation!