Thursday, October 4, 2007


I've been meaning to apologize for being too busy to write more posts...but I've been too busy (hahahaha).  No, but seriously.  Check out this link about the Storm worm.  We saw some Peacomm instances pop up, but Symantec took care of it without to much difficulty.  As part of general remediation on threats like this, we push out policy via Netsight Policy that forbids FTP, HTTP, DNS and other daemons from running at the edge.  It is a little scary that there are a group of people actively changing the code, wreaking havoc and still getting away with it.  

