You are here: silicon.com > Software > Security Strategy

Security Strategy

LDAP blues: Server weakness throws up security fears

Denial-of-service threat revealed...

By Sally Watson

Published: 17 July 2001 12:02 GMT

Researchers have uncovered a vulnerability in LDAP (lightweight directory access protocol) which has left thousands of web servers open to email bombardment by malicious attackers.

According to the CERT security team at Carnegie Mellon University, the flaw leaves servers open to denial-of-service (DoS) attacks and enables unauthorised access from outside the network.

The University of California estimates some 5,000 DoS attacks take place every week.

LDAP is a simple and widely used protocol enabling companies to access and search directories of names, phone numbers, addresses stored on a variety of incompatible systems.

Users running versions of IBM SecureWay, iPlanet Directory Server, Lotus Domino R5 Server, Network Associates' PGP Keyserver, Microsoft Exchange 5.5 LDAP Service, OpenLDAP, Oracle 8i Enterprise Edition, Qualcomm Eudora mail program and Teamware Office are at risk.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
Brokerage requires FIX Protocol with client facing skills

FIX analyst with client facing skills required. My client is looking for a candidate that can act as a bridge between the technology and the ...

LIQUIDLOGIC, ICS, PROTOCOL TRAINNERS - LONDON

LIQUIDLOGIC, ICS, PROTOCOL TRAINER - LONDON need with demonstrable exp.in course delivery within a classroom environment. Strong Integrated ...

SAP Implementation Project Manager

Our client has lauched an exciting project looking for numbers of SAP implementation project managers based in Leeds.We are looking for numbers of ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: