Tracy R Reed wrote: > On Tue, Feb 01, 2005 at 01:13:14PM -0800, John H. Robinson, IV spake thusly: > > However, the payload would only work on the MS systems. > > Right, like I said, the virus only affected MySQL on Windows.
This is where we get to split hairs. The virus will most certainly affect non-Windows MySQL servers. It will query them, probe them, then infect them if it is able to get the administrator password. However, that is the limit of the virus's ability at that point. It will go no further. > Of course you should always use strong passwords. I am thinking more and > more about going to a keys-only auth system...something you have, > something you know... I don't know how you'd manage that with MySQL. -john (SLB) -- KPLUG-List mailing list [email protected] http://www.kernel-panic.org/cgi-bin/mailman/listinfo/kplug-list
