grodog
Hero
The W32/Blaster worm is apparently a ticking time bomb!
Sometime on Aug. 16th (next Saturday, if my calendar is correct) the worm on infected machines will launch a TCP SYN flood against Microsoft's windowsupdate service! It won't happen immediately when the clock ticks over to Aug 16, but rather it will happen only after the end of the worm's scan (for infecting new systems) which is in progress at that time. So the SYN Floods will be spread out over a rather substantial period - probably several hours. Microsoft's update site will be DOSed really heavily.
For more details, see http://www.cert.org/advisories/CA-2003-20.html
Sometime on Aug. 16th (next Saturday, if my calendar is correct) the worm on infected machines will launch a TCP SYN flood against Microsoft's windowsupdate service! It won't happen immediately when the clock ticks over to Aug 16, but rather it will happen only after the end of the worm's scan (for infecting new systems) which is in progress at that time. So the SYN Floods will be spread out over a rather substantial period - probably several hours. Microsoft's update site will be DOSed really heavily.
For more details, see http://www.cert.org/advisories/CA-2003-20.html
Last edited by a moderator: