Full Disclosure mailing list archives

Re: RE: MS SQL WORM IS DESTROYING INTERNET BLOCK PORT 1434!


From: Benjamin Krueger <benjamin () seattlefenix net>
Date: Sat, 25 Jan 2003 18:05:59 -0800

* Jason Coombs (jasonc () science org) [030125 16:49]:
Bank of America should never have allowed their ATM network to rely on
routes that could be impacted by non-ATM network computer systems.

That Sapphire might have had this effect makes the sensibility behind
writing and releasing it even more apparent, if this was in fact defensive
work of a government agency as my speculation suggested.

Jason Coombs
jasonc () science org

-----Original Message-----
From: Richard M. Smith [mailto:rms () computerbytesman com]
Sent: Saturday, January 25, 2003 1:11 PM
To: jasonc () science org; 'Jay D. Dyson'; 'Bugtraq'; 'Full-Disclosure'
Subject: RE: MS SQL WORM IS DESTROYING INTERNET BLOCK PORT 1434!


However, this worm might not be so harmless as it appears because of
collateral damage:

   Bank of America ATMs Disrupted by Virus


It's a little early to be assuming that the ATMs were gummed up by
network route congestion, isn't it? I find it entirely possible that
their datacenter where the transactions are processed was the real
scene of the outage, and not the individual ATMs or their routes.

-- 
Benjamin Krueger
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: