- CERT Incident Note: The Cheese Worm
Designed to remove all inetd services referencing '/bin/sh' from systems with root shells listening on TCP port 10008.
www.cert.org/incident_notes/IN-2001-05.html
- SARC: Linux.Cheese.Worm
Attempts to spread itself to computers that have been compromised by Linux.Lion.Worm, and to remove the security hole that allowed the replication to occur.
www.symantec.com/avcenter/venc/data/linux.cheese.worm.html
|