Common Tasks

Recent Posts

Community

Email Notifications

Personal Links

Archives

Security Protection - Harry Waldron (CS)

Security Best Practices, Breaking News, & Updates

Santy -- PHP BB Worm in-the-wild

The Internet Storm Center just issued this alert:

phpBB Worm (added Dec 21st 12 pm EST)
http://isc.sans.org//diary.php?date=2004-12-21

We just received a number of reports about a new worm that infects web servers running phpBB. Apperently, there is no patch at this point. However, according to viruslist.com, a workaround can be found here:

http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=240513

http://vil.nai.com/vil/content/v_130471.htm
http://secunia.com/virus_information/14040/santy.a/
http://www.f-secure.com/v-descs/santy_a.shtml
http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=WORM_SANTY.A
http://www.symantec.com/avcenter/venc/data/perl.santy.html

Comments

Harry Waldron said:

Harry, you are a moderator at forums.mcafeehelp.com, which I believe also runs on a vulnerable version of phpBB....
# December 22, 2004 5:50 AM