BartSimpson BartSimpson:
DrCaleb DrCaleb:
It wasn't a DDOS, it was a zero day vulnerability attack. We were working overtime last night to patch our systems to prevent the same attack being used against us by others.
Care to share what server platforms you use and what patches you applied?
(Reply in pm if you'd prefer)

I'd be happy to.

Security through obscurity isn't a good policy.

Word last night we were getting from our contacts at Revenue Canada was that they were having their network hacked by an unknown exploit. So what our Directors said was to patch everything in our DMZ out of schedule up to current levels.
Normally we patch the internet facing stuff quarterly, after it's all tested in our test/dev environments.
So, all we did was go to the vendors for everything, and patch it to whatever patches were released as of last night for Windows, Linux, Oracle, Apache and Cisco etc. We'll patch production off schedule as well, but not till next week.
I was just in a meeting discussing this, and what it looks like was they were experiencing a "RUDY" attack (R-U-Dead Yet?) that has random clients open their web sessions until the web server gives up the ghost. Typical overreaction by the Federales.
