Linux worm targets PHP based application

There is news of a worm which uses a vulnerability in the PHPXMLRPC libraries to spread a computer virus. It is called as Linux/Lupper.worm. This is not just Linux or BSD specific it would affect anything that use the PHP. McAfee reports that

This worm spreads by exploiting web servers hosting vulnerable PHP/CGI scripts. It is a modified derivative of the Linux/Slapper and BSD/Scalper worms from which it inherits the propagation strategy. It scans an entire class B subnet created by randomly choosing the first byte from an hard-coded list of A classes and randomly generating the second byte.

WordPress blog software is secure from this attack :D Read the McAfee report here. More coverage is here and here.

Author: admin

I like chocolate, gadgets, open source software, photography, traveling and all shades of green colors. I love spending time with fun loving friends and family members. This is my own online journal.

Leave a Reply

Your email address will not be published. Required fields are marked *