spacer spacer spacer spacer spacer
spacer spacer spacer
spacer
spacer spacer spacer spacer spacer
spacer spacer spacer spacer
spacer
spacer spacer spacer spacer spacer
spacer spacer spacer spacer spacer
spacer spacer
spacer spacer spacer
InternetWeek
TechWeb
 Advanced Search

spacer spacer
spacer spacer
Free Newsletter
Sign up for the FREE InternetWeek NewsBreak e-mail newsletter! Subscribe
spacer spacer
spacer spacer



  Resources
  Home
  About InternetWeek.com
  Contact Us
  E-Mail Newsletter
  Tech Library
  TechCareers
  Privacy Statement

  Resource Centers
  Virtual Private Networks
   (VPNs)

  TechWeb Sites
  InformationWeek
  InternetWeek
  Network Computing
  Financial Technology
   Network
  Bank Systems &
   Technology
  Insurance & Technology
  Wall Street & Technology
  Technology & Learning
  Optimize Magazine
  The Open Enterprise

 Ad Info

spacer
spacer spacer spacer spacer


SQL Server Worm Slows Internet Traffic To A Crawl

By Mitch Wagner


A new worm attacking Microsoft SQL Server 2000 systems slowed Internet traffic to a crawl early Saturday.

Security companies are warning about the worm, named W32/SQL Slammer or Sapphire, which uses a buffer overflow in SQL Server to take over the system and send out a flood of packets. The flaw has been known, and a patch has been available, since the summer.

South Korea was hit particularly hard, with most of the nation's Internet users unable to access Web sites for nearly half the day, according to reports. Japan and other high-technology Asian areas were also hard-hit.

Security experts say that SQL Server 2000 users should install the SQL Server 2000 Service Pack 3, and consider blocking traffic on port 1434 for unknown machines. The worm only affects Windows 2000 servers running SQL Server, according to security firm F-Secure.

The patch, and further details about the vulnerability, are available in a Microsoft security bulletin posted July 24. CERT posted an advisory on Saturday.

Like the Code Red worm, which spread in July 2001, the worm is memory-resident, it never writes to disk. An infected system can be cleaned by simple rebooting, but it will soon get reinfected if it is connected to the network without patching SQL Server, F-Secure said.

The worm was detected at about 12:30 am Eastern time, according to F-Secure. It took down five of the 13 Internet root nameservers.

Symantec said the worm had infected at least 22,000 systems by 9 am Eastern time. But the attack abated quickly; Symantec reported a 60 percent reduction in worm-related traffic by about 3 AM Eastern time. Symantec attributed the decline to Internet service providers filtering for the attack.

"Waking up at 2AM after falling asleep at work on a Friday evening, to be greeted by a wall full of router racks lit up like a wall-shaped Christmas Tree is a sobering experience indeed," wrote one participant in a discussion about the attack on Slashdot.

spacer
spacer spacer spacer spacer spacer
spacer
spacer spacer spacer
spacer
spacer spacer spacer
Mirapoint Adds Anti-Spam Functions To Messaging Appliance
spacer
Mazu Introduces Network Security Technology
spacer
OASIS Aims To Standardize Office Formats
spacer
Sun, Check Point Develop Linux-Based VPN/Firewall Appliance
spacer
Microsoft's XP/Longhorn Moves Spark Debate About Plans
spacer
Microsoft Issues Critical Security Warning
spacer
Ximian Extends Server-Based Management To SuSE Linux
spacer
Tool Diagnoses Web Services Problems
spacer
Liberty Alliance Updates Identity Specs
spacer
FreeMarkets Aims To Speed New Supplier Relationships
spacer
Software Firm Hires Digital River To Run Commerce Site
spacer
Microsoft May Disclose Revisions To Controversial Enterprise Licensing Plan
spacer
Logistics Firm Descartes Licenses Mercator Integration Software
spacer
spacer spacer

spacer

spacer

spacer
Let our Solution Center help you find the network products you need. Then, receive customized proposals from qualified suppliers -- fast! MORE

spacer

spacer
Looking for technical information, white papers and analyst reports on CRM, wireless, enterprise networking, and more? Don't miss Tech Library's collection of 14,000+ white papers.

Featured White Paper:
Supply Chain Management: Why B2B eMarkets Are Here to Stay -- Accenture

spacer

spacer

spacer
  • VPN Source Page
  • Application Outsourcing
  • IP Telephony Source Page
  • Customer Service

  • spacer

    spacer spacer
    Home | Breaking News | Supply Chain | Web Development
    spacer
    Security | IT Services | All Stories | Sitemap
    spacer
    spacer
    Media Kit  |   Copyright © 2010  |   CMP Media LLC  |   Privacy Statement  |   Feedback