May 18, 2012

Very Simple Solaris Root Exploit

There is an incredibly simple root exploit for computers running the Solaris operating system with telnet enabled. While in general terms it is a bad idea to have telnet enabled and particularly so on a forward facing or internet connected machine, this exploit is so simple and Solaris boxes are popular for forward facing roles such as web servers, etc. In general we would not be concerned with Solaris exploits at Managed Solutions. However this particular exploit has ramifications for all of us. Anything that has the potential for a very successful internet worm has the potential to affect the general availability of services we rely on. It could also lead to a compromise of our personal information should one of the hosts that we might have made a credit card purchase through become compromised. We will continue to monitor activity of this worm and update this article of any significant details.

As of 2/28/2007 there is a worm circulating for this previously reported simple exploit. We are actually surprised it took this long for something to hit the wild. Hopefully most organizations patched the vulnerability. Unfortunately it seems like things like this are far too often dealt with in a reactive fashion.

Popularity: 3% [?]

Virtualization Technology Pays

You may have read our primer on Virtualization technology where we detailed some compelling reasons to consider virtualizing some or all of your servers. At the time of writing that article we were not aware of a new program from PG&E that can give you up to $300 rebate per server that you virtualize. While the process is not without some invasive steps, such as before and after inspections, a large project would be well worth the work. Let’s say you were planning to consolidate 20 servers in your data center, that could mean up to $6,000 back from PG&E, not a paltry sum by any means. Even for a smaller business looking to consolidate a small server closet the savings could pay a portion of your installation and configuration costs. This is the sort of creative incentive that shows PG&E is a technically aware organization.

Related Posts Plugin for WordPress, Blogger...

Popularity: 1% [?]