Computing in the real world
SEARCH FOR: IN:
      
Welcome Guest  Register Log in

News 

[PSUs]
Tuesday 21st December 2004
Santy.A sparks messageboard infection epidemic 5:52PM, Tuesday 21st December 2004
A new virus exploiting popular messageboard software is creating an epidemic of infections according to security experts Kaspersky Labs.

Santy.A infects vulnerable versions of the phpBB bulletin board software. It uses Google to search for servers running the software and then sends a script to exploit a security hole in the software that allows it to control the software. It then scans the system and overwrites files ending with ASP, HTM, JSP, PHP, PHTM and SHTM and replaces them with files showing the text:

'This site is defaced!!! This site is defaced!!!. NeverEverNoSanity WebWorm generation.'

Once the infection is complete, Santy.A will run the Google query again looking for fresh victims.

Although Kaspersky rates the threat level as severe, end-users viewing infected message boards run no risk of their own systems being infected (unless they too have a web server running a vulnerable version of phpBB).

The company recommends upgrading the software to 2.0.11.

Note that our forums run phpBB which were upgraded to 2.0.11 some time ago.

Submit to: Digg  |  Slashdot  |  Del.icio.us  |  Technorati

Related News



Top 10 Broadband

150+ broadband packages

Compare 30+ mobile broadband deals

Powered by Top 10 Broadband


Columns

Prolog:

After eight years in a caring relationship, Tim Danton is falling for a desktop once again. › See full Opinion