0-day in Microsoft IIS 5/6 FTP

September 1, 2009 | Jaime Blasco

A 0-day exploit in Microsoft IIS 5/6 FTP was recently published on Milw0rm while HDMoore is porting the bug to Metasploit.

Alienvault’s feed customers are protected with the directive released today:

  • 45046 :AV Possible 0day IIS FTP Exploit against DST_IP
  • http://isc.sans.org/diary.html?storyid=7039


    We have previously coverage with two directives present on Alienvault Professional Feed:

  • 45024: AV Possible FTP Exploit attempt against DST_IP
  • 45025: AV Possible FTP Exploit attempt against DST_IP (FTP preprocessor)
  • Jaime Blasco

    About the Author: Jaime Blasco

    Jaime Blasco is a renowned Security Researcher with broad experience in network security, malware analysis and incident response. At AT&T Cybersecurity, Jaime leads the Alien Labs Intelligence and Research team that leads the charge of researching and integrating threat intelligence into detection mechanisms. Prior to working at AT&T, Jaime was Chief Scientist at AlienVault. Prior to that, he founded a couple of startups (Eazel, Aitsec) working on web application security, source code analysis and incident response. He is based in San Francisco. Jaime's work in emerging threats and targeted attacks is frequently cited in international publications such as New York Times, BBC, Washington Post and Al Jazeera.

    Read more posts from Jaime Blasco ›


    Get the latest security news in your inbox.

    Subscribe via email


    Get price Free trial