cancel
Showing results for 
Search instead for 
Did you mean: 

News : Shellshock: 'Deadly serious' new vulnerability found

Anonymous
Not applicable
Headline : Shellshock: 'Deadly serious' new vulnerability found

Excerpt from the ~ Link "A "deadly serious" bug potentially affecting hundreds of millions of computers, servers and devices has been discovered.
The flaw has been found in a software component known as Bash, which is a part of many Linux systems as well as Apple's Mac operating system."


My Thoughts : Heads up.


Source : BBC News.
Read more here : http://m.bbc.co.uk/news/technology-29361794
Message 1 of 8
1,437 Views
7 REPLIES 7

Anonymous
Not applicable

This is potentially the worst vulnerability to hit the world yet! Where the Heartbleed bug that was found a couple of months ago maybe affected 500,000 devices worldwide, this has the potential to affect 50 million devices!

 

I'm waiting on more information being released as this needs to be patched against ASAP because of how easy it is to attack.

Message 2 of 8
1,420 Views

Beenherebefore
Level 32: Blockbuster         
  • 5063 Posts
  • 113 Topics
  • 12 Solutions
Registered:

Remember when we had 2 weeks to protect our computers from Gameover ZeuS and Cryptolocker ?

 

There will always be scaremongering reports of this type.

 

I'm not saying ignore the report but be honest, how many people do you know that had the Gameover ZeuS/Cryptolocker malware on their PCs ?

"My life is a facsimile of a sham"
Message 3 of 8
1,397 Views

MI5
  • 151956 Posts
  • 651 Topics
  • 28863 Solutions
Registered:
Slow news day..................
I have no affiliation whatsoever with O2 or any subsidiary companies. Comments posted are entirely of my own opinion. This is not Customer Service so we are unable to help with account specific issues.
Please select the post that helped you best and mark as the solution. This helps other members in resolving their issues faster. Thank you.
Message 4 of 8
1,395 Views

jonsie
Level 94: Supreme
  • 95950 Posts
  • 612 Topics
  • 7141 Solutions
Registered:
Message 5 of 8
1,387 Views

sheepdog
Level 26: Upbeat
  • 3366 Posts
  • 31 Topics
  • 39 Solutions
Registered:

That BBC article does a lot of scaring by quoting people. As I've been looking at the same thing today at work, try these links for a more in-depth view: 

 

http://www.theregister.co.uk/2014/09/24/bash_shell_vuln/

https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injecti...

 

In short, if you're runing Apache as a front end and haven't disabled certain modules like mod_cgi, start editing that httpd.conf asap. 

Message 6 of 8
1,354 Views

Anonymous
Not applicable
Message 7 of 8
1,321 Views

Beenherebefore
Level 32: Blockbuster         
  • 5063 Posts
  • 113 Topics
  • 12 Solutions
Registered:

Early reports suggest up to 500 million machines could be vulnerable to Shellshock but, this figure was now being revised downwards because of the "number of factors that need to be in play for a target to be susceptible".

 

 

"My life is a facsimile of a sham"
Message 8 of 8
1,316 Views