Results 1 to 3 of 3
- 09-22-2009 #1
Remote exploit released for Windows Vista SMB2 worm hole
"Security researchers at penetration testing firm Immunity have created a reliable remote exploit capable of spawning a worm through an unpatched security hole in Microsoft’s dominant Windows operating system.
A team of exploit writers led by Kostya Kortchinsky attacked the known SMB v2 vulnerability and created a remote exploit that’s been fitted into Immunity’s Canvas pen-testing platform. The exploit hits all versions of Windows Vista and Windows Server 2008 SP2, according to Immunity’s Dave Aitel.
Immunity’s Canvas is used by IDS (intrusion detection companies) and larger penetrating testing firms as a risk management tool.
Exploit writers at the freely available Metasploit Project are also close to finishing a reliable exploit for the vulnerability, according to Metasploit’s HD Moore.
The vulnerability, which was originally released as a denial-of-service issue, does not affect the RTM version of Windows 7, Microsoft said. It appears Microsoft fixed the flaw in Windows 7 build ~7130, just after RC1.
Windows Vista and Windows Server 2008 users remain at risk.
In the absence of patch, Microsoft recommends that users disable SMB v2 and block TCP ports 139 and 445 at the firewall."
Source
You might watch a video of the exploit here
https://www.immunityinc.com/documentation/smbv2.html
- 09-22-2009 #2
This exploit does not effect W7, nor XP. If you would like to see a listing of all operating systems effected, go here to see if you are on the list:
http://www.microsoft.com/technet/sec...ry/975497.mspx
If you are using an effected OS, that same site offers a work-around that will work until a patch has been fully tested.
- 09-22-2009 #3
Thank you so much for the link you provided Polkadot

While waiting for an official patch, that link will be very useful for Vista and Windows Server 2008 usersLast edited by leofelix; 09-22-2009 at 09:19 AM. Reason: correction
Similar Threads
-
iPack Exploit Kit Bites Windows Users
By leofelix in forum Spyware/VirusesReplies: 8Last Post: 04-22-2010, 05:29 AM -
DirectX 11 For Windows Vista Released
By A Guy in forum General ForumReplies: 0Last Post: 10-31-2009, 02:50 PM -
3 Million hit by Windows Worm
By Mark in forum General ForumReplies: 11Last Post: 01-20-2009, 12:20 PM -
Chinese Team Mistakenly Released Unpatched IE7 Exploit
By Rekhyt in forum ChatReplies: 3Last Post: 12-20-2008, 12:55 AM -
Settings for remote controlling a Mac from Windows
By flls04 in forum NetworkReplies: 3Last Post: 08-29-2007, 09:30 AM


LinkBack URL
About LinkBacks





Reply With Quote