All the latest UK technology news, reviews and analysis

Script kiddies target Microsoft IIS

by James Middleton

05 May 2001

Be the first to comment

  • Tweet this

Hot on the heels of Microsoft's announcement that there is a serious vulnerability inherent in its IIS 5 web server software, a tool which allows script kiddies to easily exploit the flaw is circulating on the internet.

A hacker going by the name of Dark Spyrit released the code shortly after Microsoft released its advisory that due to an error in the Internet Printing Protocol extension, a malicious user could exploit a buffer overflow and take full control of a web server running IIS 5.

The code, known only as jill.c, is a C script that requires little technical knowledge to exploit the vulnerability.

The jill.c code sneaks malicious code past firewalls by disguising the data so it looks like it's coming from a web server. Because web traffic is considered essential as well as typical traffic, the firewall does not block it and allows a connection on any port.

The code automatically exploits the glitch in the internet printing Internet Services Application Programming Interface (ISAPI) and then returns a command prompt to the hacker, giving him administrator level access.

Because of its automated nature, the jill script could be used by a script kiddie with little technical know-how to hijack a server.

Administrators who have already applied the patch need not worry about this tool, but Microsoft is strongly advising those who have not patched their servers to do so immediately.

The patch and more information can be found here.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

35%

0%

11%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

C#, WPF, Silverlight, UI Development, Software Engineers

C#, WPF, Silverlight, UI Development, Software Engineers...

Operations Manager

Candidate required who is used to working in a client...

Build Change Release Manager / Build Change Manager / Liverpool

Build Change Release Manager / Build Change Manager...

IT Service Desk Manager / Liverpool / Up to £60,000

IT Service Desk Manager / Liverpool / Up to £60,000...

To send to more than one email address, simply separate each address with a comma.