Got PushDo SSL packets?
Steven Adair over at ShadowServer has posted a blog entry about the strange going's on with the PushDo botnet. There has been a large rise in the detection of SSL packets hitting a number of domains, www.sans.org included.
If you are the admin of one of these 315 sites and you can grab some of these packets in a pcap and your willing to share, can you upload them via our contact form so that we can compare with what we are seeing.
Have a good weekend.
Steve Hall
ISC Handler of the day
New and updated VMWare advisories
Today VMware has released the following new and updated security advisories:
New - VMSA-2010-0002
This is described as - VMware vCenter update release addresses multiple security issues in Java JRE. The JRE is updated to version 1.5.0_22 and this covers a *lot* of CVE's.
Updated - VMSA-2009-0016.2
Comments