September 18, 2002

Slapper: The FUD and the Danger

"Let me start out by saying that the so-called Linux.Slapper.a worm is not a Linux worm no matter what the security companies say. MacOS-X, the BSDs, AIX, HP-UX, Tru64, Solaris, yes even Windows, are all potentially vulnerable because it's really a worm that exploits long known holes in older versions of the OpenSSL module used by many Apache servers and a few versions of BIND to provide Secure Socket Layer (SSL) connections."



