Last Updated: 2015-02-26 18:17:29 UTC
by Johannes Ullrich (Version: 1)
We do have a new way to search our data more efficiently by subnets. Right now, the data will cover recent reports to DShield and a few of external feeds that we include. You can access the new report here: https://isc.sans.edu/subnetquery.html
I am still monitoring the impact the queries have on our overall database performance. For now, you are limited to 3 queries per minute if you are not logged in.
And as a reminder: The data is only as good as the data we receive. Please consider contributing your own data. See https://isc.sans.edu/howto.html for details. We do also access web server error logs (see: 404 project) and Kippo SSH honeypot logs.
In case of high database load, you will be redirected back tot he index page (index_cached.html),
Last Updated: 2015-02-26 02:51:02 UTC
by Chris Mohan (Version: 1)
The Red Hat security team has released an advisory on a Samba vulnerability effecting Samba version 3.5.0 through 4.2.0rc4. "It can be exploited by a malicious Samba client, by sending specially-crafted packets to the Samba server. No authentication is required to exploit this flaw. It can result in remotely controlled execution of arbitrary code as root." 
A patch  has been released by the Samba team to address the vulnerability.
Chris Mohan --- Internet Storm Center Handler on Duty
If you have more information or corrections regarding our diary, please share.