OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Dailydave] Times up!

From: Erik Fichtner (emf1123gmail.com)
Date: Fri Oct 24 2008 - 07:36:35 CDT


Fionnbharr wrote:
> http://blog.threatexpert.com/2008/10/gimmiva-exploits-zero-day-vulnerability.html
>
> "Critical vulnerability in Server Service has only been patched by
> Microsoft (MS08-067), as a new worm called Gimmiv.A has been found
> exploiting it in-the-wild."

http://blogs.technet.com/msrc/archive/2008/10/23/ms08-067-released.aspx

The MSRC blog posting seems to suggest that Gimmiv.A was how this
bug was detected in the wild in the first place.

        "We have also have detection for the malware we found used
        in attacks exploiting this vulnerability (TrojanSpy:Win32/Gimmiv.A
        and TrojanSpy:Win32/Gimmiv.A.dll) in the signatures the MMPC is
        releasing today and sharing that information with our partners."

_______________________________________________
Dailydave mailing list
Dailydavelists.immunitysec.com
http://lists.immunitysec.com/mailman/listinfo/dailydave