Threat Level: green Handler on Duty: Guy Bruneau

SANS ISC: MS11-100 DoS PoC exploit published - SANS Internet Storm Center SANS ISC InfoSec Forums


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
MS11-100 DoS PoC exploit published

If you have not patched yet for vulnerability MS11-100 you might want to do it ASAP, because the DoS PoC exploit for this vulnerability has been published two days ago.

More information about the vulnerability and patches at http://technet.microsoft.com/en-us/security/bulletin/ms11-100

Manuel Humberto Santander Peláez
SANS Internet Storm Center - Handler
Twitter: @manuelsantander
Web:http://manuel.santander.name
e-mail: msantand at isc dot sans dot org

 

 

Manuel Humberto Santander Pelaacuteez

183 Posts
ISC Handler
Can you please provide some references for your statement? I have found *nothing* except for a lot of references to this post. My employer usually requires more than a blog post to change a decisions they've already made after a risk analysis.
Thanks!
-JP
Anonymous
Posts
https://github.com/HybrisDisaster/aspHashDoS

though I have not tried it.
Anonymous
Posts
We have posted ModSecurity mitigation options - http://blog.spiderlabs.com/2012/01/modsecurity-mitigations-for-aspnet-hashtable-dos-vulnerability-cve-2011-3414.html

This is useful if you have front-ended your web app servers with a ModSecurity reverse proxy.
Anonymous
Posts
@Ryan: thanks for your work on the ModSecurity rules and these additions in particular!
Erik van Straten

122 Posts Posts

Sign Up for Free or Log In to start participating in the conversation!