Aren't you glad you use WiTango?

New Variant of Santy Worm Spreads

Mon Dec 27,12:00 PM ET
Add to My Yahoo!  Technology - PC World

Peter Sayer, IDG News Service

The latest version of the Santy worm poses an elevated risk to many Web sites built using the PHP scripting language, security experts warn. Protecting those sites may involve individually recoding them, those security experts say.

Early versions of the Santy worm exploited a specific bug in a bulletin-board software package called phpBB, and their attacks could be prevented by applying a patch to the software. However, the security flaw exploited by newer versions of the worm such as Santy.C or Santy.E is more general, and can occur anywhere a site designer has left the door open for the inclusion of arbitrary files into PHP scripts, experts at K-OTik Security in Montpellier, France, warn.

http://www.pcworld.com/news/article/0,aid,119051,00.asp

Reply via email to