Hackers go after unpatched servers

Fix them now or regret it later...

NEWS Network administrators who have failed to patch their systems against the Microsoft Windows Internet Naming Service (WINS) vulnerability are now at much greater risk of attack.

The SANS Internet Storm Centre warned on Wednesday that it has detected a steep rise in probes directed at network ports handling WINS services over the past few days. It believes this is a sign that the vulnerability is being exploited by malicious hackers.

SANS said: "If you have not patched your WINS servers in your respective companies or campuses, beware. Patching these systems is now overdue."

According to statistics gathered by The Research and Education Networking Information Sharing and Analysis centre, this increase in activity began on 30 December, but became much greater on 1 January.

WINS, which is part of several Microsoft server products including NT 4.0 Server, Windows 2000 Server and Windows Server 2003, is used to identify the IP addresses of specific computers on a network.

Microsoft admitted back in December that WINS contained a flaw that could allow remote attacks to be launched against systems. Patches can be downloaded from the Microsoft website.

Graeme Wearden writes for ZDNet UK.

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your silicon.com account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ

Get silicon.com's daily newsletter

  • Register on silicon.com

    Enter your email to register

Keep in touch with silicon.com

silicon.com newsletters