From mboxrd@z Thu Jan 1 00:00:00 1970 X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on polar.synack.me X-Spam-Level: X-Spam-Status: No, score=-1.9 required=5.0 tests=BAYES_00 autolearn=ham autolearn_force=no version=3.4.4 X-Google-Language: ENGLISH,ASCII-7-bit X-Google-Thread: 107f24,582dff0b3f065a52 X-Google-Attributes: gid107f24,public X-Google-Thread: 103376,bc1361a952ec75ca X-Google-Attributes: gid103376,public X-Google-Thread: 109fba,582dff0b3f065a52 X-Google-Attributes: gid109fba,public X-Google-Thread: 1014db,582dff0b3f065a52 X-Google-Attributes: gid1014db,public X-Google-ArrivalTime: 2001-07-31 22:06:03 PST Path: archiver1.google.com!newsfeed.google.com!newsfeed.stanford.edu!news.tele.dk!194.25.134.62!newsfeed00.sul.t-online.de!newsmm00.sul.t-online.com!t-online.de!news.t-online.com!not-for-mail From: "Daniel Fischer" Newsgroups: comp.lang.ada,comp.lang.c,comp.lang.c++,comp.lang.functional Subject: Re: How Ada could have prevented the Red Code distributed denial of service attack. Date: Wed, 01 Aug 2001 07:01:13 +0200 Organization: Gueldenland MUD: telnet gl.mud.de 4444 Message-ID: References: <3B6555ED.9B0B0420@sneakemail.com> <87n15lxzzv.fsf@deneb.enyo.de> <3B672322.B5EA1B66@home.com> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 8bit X-Trace: news.t-online.com 996642078 01 22995 BrknSCnVS0ACaf 010801 05:01:18 X-Complaints-To: abuse@t-online.com X-Sender: 520060923510-0001@t-dialin.net User-Agent: Pan/0.9.7 (Unix) Xref: archiver1.google.com comp.lang.ada:10917 comp.lang.c:71204 comp.lang.c++:78964 comp.lang.functional:7061 Date: 2001-08-01T07:01:13+02:00 List-Id: Hej, - followup ("raj" ) > Red Code uses a combination of: > > 1. Buffer overflow > > See: > .ida "Code Red" Worm ~~~~ > http://www.eeye.com/html/Research/Advisories/AL20010717.html for a > recent , readable account see: > > Win32 Buffer Overflows (Location, Exploitation and Prevention) ~~~~~ > dark spyrit AKA Barnaby Jack > http://www.phrack.org/show.php?p=55&a=15 > The buffer overflow occurs because of an old and well known bug in the C > libraries. > Using Ada or another modern language like Ocaml or Mozart could have > prevented this, thus stopping the worm before it infected the very first > IIS server. ~~~ Get a clue. :) Daniel -- IMO, anyway. end message by (Daniel Fischer ) ` { } \ | [ ] ' ~ :) ;) :/ :( <-- insert as needed clc FAQ: http://www.eskimo.com/~scs/C-faq/top.html