<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: 0day gets hundreds of thousands of web servers</title>
	<atom:link href="http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/</link>
	<description>The views of one man on security, privacy and anything else that catches his attention</description>
	<pubDate>Sat, 11 Oct 2008 23:47:26 +0000</pubDate>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>By: Martin</title>
		<link>http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/#comment-1728</link>
		<dc:creator>Martin</dc:creator>
		<pubDate>Tue, 29 Apr 2008 00:05:08 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/#comment-1728</guid>
		<description>Thanks for the clarification Larry.  Brian was a bit overzealous on this one, but he's usually pretty close to the mark.  I continue to have confidence in his writing.  I didn't have to propagate the message without further corroboration either.   Live and learn.

Martin</description>
		<content:encoded><![CDATA[<p>Thanks for the clarification Larry.  Brian was a bit overzealous on this one, but he&#8217;s usually pretty close to the mark.  I continue to have confidence in his writing.  I didn&#8217;t have to propagate the message without further corroboration either.   Live and learn.</p>
<p>Martin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Larry Seltzer</title>
		<link>http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/#comment-1727</link>
		<dc:creator>Larry Seltzer</dc:creator>
		<pubDate>Mon, 28 Apr 2008 23:36:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/#comment-1727</guid>
		<description>There is no 0day and the servers aren't compromised. It's SQL injection attacks against poorly-written applications. The Washington Post story made an excessive leap to the conclusion that it must be as a result of the vulnerability disclosed the week before, but that vulnerability is quite difficult to exploit and probably can't be on a default install.</description>
		<content:encoded><![CDATA[<p>There is no 0day and the servers aren&#8217;t compromised. It&#8217;s SQL injection attacks against poorly-written applications. The Washington Post story made an excessive leap to the conclusion that it must be as a result of the vulnerability disclosed the week before, but that vulnerability is quite difficult to exploit and probably can&#8217;t be on a default install.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben</title>
		<link>http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/#comment-1725</link>
		<dc:creator>Ben</dc:creator>
		<pubDate>Mon, 28 Apr 2008 16:55:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/04/28/0day-gets-hundreds-of-thousands-of-web-servers/#comment-1725</guid>
		<description>They've not been too quiet... see this post from late Friday with links to another advisory and a blog write-up on IIS.net...
http://blogs.technet.com/msrc/archive/2008/04/25/questions-about-web-server-attacks.aspx</description>
		<content:encoded><![CDATA[<p>They&#8217;ve not been too quiet&#8230; see this post from late Friday with links to another advisory and a blog write-up on IIS.net&#8230;<br />
<a href="http://blogs.technet.com/msrc/archive/2008/04/25/questions-about-web-server-attacks.aspx" rel="nofollow">http://blogs.technet.com/msrc/archive/2008/04/25/questions-about-web-server-attacks.aspx</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>
