MySQL worm attacks databases

Thomas De Maesschalck Posted on by
A new worm has been discoverd that exploits weak MySQL installations on Windows-based platforms.

The SANS Institute's Storm Centre said that the MySQL worm takes advantage of weak passwords and the database's support for remote configuration. It is said that thousands of vulnerable databases have been infected by this worm so far.
The bot uses the known "MySQL UDF Dynamic Library Exploit". In order to launch itself, the bot first has to authenticate to MySQL as the "root" user. A long list of passwords is included with the bot, and it will try a brute force technique to get the password.
The insitute said that MySQL users should use stronger passwords and need to make use of a firewall to prevent infection and spreading of this worm.

More info at ComputerWeekly
Thomas De Maesschalck

About the Author

Thomas De Maesschalck

Thomas has been messing with computer since early childhood and firmly believes the Internet is the best thing since sliced bread. Enjoys playing with new tech, is fascinated by science, and passionate about financial markets. When not behind a computer, he can be found with running shoes on or lifting heavy weights in the weight room.
Thanks. Your comment is waiting for moderation.
Your comment was published.

Comments (1)

  1. Anonymous

    next time try to use spellchecker before posting

    Reply

Leave a comment

Replying to