# I'm SHOCKED! A Microsoft product has a flaw?

**URL:** <https://boards.straightdope.com/t/im-shocked-a-microsoft-product-has-a-flaw/73204>\
**Category:** In My Humble Opinion\
**Created:** [July 20, 2001, 4:27pm UTC](https://boards.straightdope.com/t/im-shocked-a-microsoft-product-has-a-flaw/73204 "2001-07-20T16:27:23Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![False\_God](https://avatars.discourse-cdn.com/v4/letter/f/ee7513/32.png) [@False\_God](https://boards.straightdope.com/u/False_God)\
**Post date:** [July 20, 2001, 4:27pm UTC](https://boards.straightdope.com/t/im-shocked-a-microsoft-product-has-a-flaw/73204/1 "2001-07-20T16:27:23Z")

</div>

> **[Privileged Access Management and Remote Access Software](https://www.beyondtrust.com/)**
>
> BeyondTrust’s Privileged Access Management platform protects your organization from unwanted remote access, stolen credentials, & misused privileges

Apparently, IIS servers the world over are preparing to blitz the internet with a DDOS (distributed denial of service) attack by infecting them with a worm that exploits a security flaw in Microsoft’s IIS Server software. Nothing new here, but the intended target is the White House.

Anyone want to bet on how fast Bill’s red phone rings?

Any tech people besides myself have experience troubleshooting stuff like this?

And CNet is reporting on it here:

> **[Technology News](https://www.cnet.com/news/)**
>
> CNET news editors and reporters provide top technology news, with investigative reporting and in-depth coverage of tech issues and events.

---

<div class="post-metadata">

**Author:** ![Dragwyr](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/dragwyr/32/2855_2.png) [@Dragwyr](https://boards.straightdope.com/u/Dragwyr)\
**Post date:** [July 21, 2001, 2:14am UTC](https://boards.straightdope.com/t/im-shocked-a-microsoft-product-has-a-flaw/73204/2 "2001-07-21T02:14:23Z")

</div>

Yes. We got hit by this worm this AM. There is a patch for it from Microsoft that has been out for the past couple of weeks at [http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS01-033.asp](http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS01-033.asp)

and a very throrough description of it at [http://www.cert.org/advisories/CA-2001-19.html](http://www.cert.org/advisories/CA-2001-19.html)

---

<div class="post-metadata">

**Author:** ![Monster104](https://avatars.discourse-cdn.com/v4/letter/m/c6cbf5/32.png) [@Monster104](https://boards.straightdope.com/u/Monster104)\
**Post date:** [July 21, 2001, 11:49am UTC](https://boards.straightdope.com/t/im-shocked-a-microsoft-product-has-a-flaw/73204/3 "2001-07-21T11:49:34Z")

</div>

I also read the White House website was switch to an alternate IP address, so the flaw (which can only attack a specific IP) failed.

There’s an article at CNET somewhere…
