New Shellshock Worm Seeks Vulnerable Systems at Tens of Thousands of IPs

  • 11 April 2015
  • 0 replies
  • 104 views

Userlevel 7
Badge +54
By Ionut Ilascu    11 Apr 2015
 
Infected machines added to scanning network
 
http://i1-news.softpedia-static.com/images/news2/New-Shellshock-Worm-Seeks-Vulnerable-Systems-at-Tens-of-Thousands-of-IPs-478233-2.jpg
 
A new malicious operation that seeks to enslave hosts vulnerable to the Shellshock bug for Bash, the default command shell found in many Linux and Unix systems, has been observed by security researchers this week.
 
Disclosed in late September 2014, Shellshock is a serious vulnerability that allows an attacker to execute arbitrary commands in Bash by appending them after a variable function.
 
The shell is used in numerous services open to the Internet, such as web servers, which makes the security flaw a significant one. By comparison, its impact rivals the one Heartbleed had.
 
Despite patches being available and extensive media coverage, the Shellshock fix has not been applied by all administrators, leaving their machines vulnerable to cyber attacks.
 
Full Article

0 replies

Be the first to reply!

Reply