Small Business Resources, Business Advice and Forms from AllBusiness.com
 

The SQL slammer worm: How two organizations survived the attack

The Oakland Raiders offense wasn't the only thing that got slammed on Superbowl weekend. Fans who needed twenties to cover their office pool bets got shut out of their accounts as the "SQL Slammer" worm shut down most of Bank of America's 13,000 ATMs the day before the big game. When the dust settled,

this attack once again demonstrated the precarious nature of organizational security measures.

While antivirus protection and firewalls are an essential part of any organization's resources, they are essentially reactive. Software vendors are quick to release patches or new antivirus definitions as soon as one hits, but they can't necessarily predict what attack someone will come up with next. By the time they discover the problem, work out a fix, and get customers to install it, the damage is done. SQL Slammer was no exception. It took only three minutes to reach a rate of conducting 55 million scans per second as it sought to locate and spread to vulnerable computers. After that, its growth slowed only because it tied up so much bandwidth that it couldn't continue to expand.

In addition, make sure to read these articles:

  • Webscreen Technology, Inc. Selected to Protect...
  • Business Editors/High-Tech Writers SAN MATEO, Calif.--(BUSINESS WIRE)--Feb. 12, 2004 About Web Services, and the host to over four million websites, is now using the Webscreen ......
  • New TruSecure Research Offers Corporations...
  • Business Editors/High-Tech Writers HERNDON, Va.--(BUSINESS WIRE)--Dec. 29, 2003 Peer-to-Peer Applications, Spyware and Trojans Now Pose Larger Threat to Security Administrators and Corporate Networks According to ......
  • SofaWare Safe@ Security Solutions Protect...
  • Business Editors/High-Tech Writers RAMAT GAN, Israel and REDWOOD CITY, Calif.--(BUSINESS WIRE)--March 11, 2003 SofaWare's Safe@ Product Family Shields Multiple PCs in the Home or Office ......
  • NOTEBOOK: 26th annual INTIX conference
  • The ticketing industry was heard at the International Ticketing Assn. conference and exhibition in Hollywood in January.
  • We need a parallel network for a secure...
  • HEADNOTE SLAMMER E-mailed press releases from Moscow-based antivirus firm Kapersky Labs seem to have a Russian accent. The charmingly precise English - far more grammatically ......
  • Paint the Office Red
  • Every day you walk into the same drab office?gray walls on all four sides. If you're lucky, you might have one window looking out onto ......
  • Citadel Issues Alert for Vulnerability...
  • Business Editors/High-Tech Writers DALLAS--(BUSINESS WIRE)--Jan. 27, 2003 Citadel's V-Flash Team Provides Largest Library of Automated Remediation Signatures for All Known Vulnerabilities, Including SQL Slammer Citadel ......
  • Souper Bowl Totals Climb In Spite of SQL...
  • Business Editors COLUMBIA, S.C.--(BUSINESS WIRE)--Jan. 29, 2003 Seventy-five phones rang throughout the day on Super Bowl Sunday at the phone bank of the Souper Bowl ......
  • Media Advisory -- IntruVert Networks Provides...
  • Business Editors & Technology Writers SAN JOSE, Calif.--(BUSINESS WIRE)--Jan. 26, 2003 New Signature is First to Detect and Stop Attacks at Perimeter WHO: Parveen Jain, ......
  • WAM!NET Services Remain Available Despite...
  • Business Editors & High-Tech Writers EAGAN, Minn.--(BUSINESS WIRE)--Jan. 30, 2003 WAM!NET, a global provider of shared services for content management and distribution, confirmed today that ......
  • Security: Are you spending enough?
  • One problem with writing about network and computer security is the speed at which the threat changes. In the few weeks that separate my writing ......
  • Security: are you spending enough?
  • One problem with writing about network and computer security is the speed at which the threat changes. In the few weeks that separate my writing ......
  • Protection appliance.
  • The Network Security 7100 Series is a line of intrusion-prevention appliances offering multigigabit intrusion protection and one-click-to-prevention capability. The product can be transitioned from a ......