★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/server_security_article-3528.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Server Security 8/19/2001 22:04

Apache CodeRed Countermeasures with PHP: codeRedKiller!

LinuxPR / LinuxToday
Posted By: Pete O'Hara
8/19/2001

codeRedKiller is a simple concept that truly can help conserve resources. It saves time and energy (bandwidth and cpu power, etc) by automatically identifying and dropping requests from CodeRed infected hosts. Its goals are to stop CodeRed requests to apache webservers and to do it without requiring more effort than a typical 404 error.

codeRedKiller achieves these goals with a straightforward PHP script (included) that masquerades as the "defualt.ida" file that CodeRed itself searches out. If a request is made to this file (a PHP script in this case) it simply records the IP address of the offending host (the requestor) to a file.


Click here to go to this article.

Prioritizing patches: A precipitous pandemonium
Sep 8

PGP opens up complete encryption source code
Sep 7

Quantum Crypto to the Rescue
Sep 7

Linux Trojan spotted in the wild
Sep 7

Inside Jail
Sep 7

Linux Advisory Watch - September 7th 2001
Sep 7

Linux users warned of new Trojan danger
Sep 6

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000