the most trusted source for computer security training, certification and research


The Code Red Message in a Bottle

Click Here
Abstract
There are several lessons to be drawn from the Code Red incident, and this paper will focus on those I believe are the most important. These include the following areas: the need for faster identification; the need for more coordinated analysis; the need for more clear and timely warnings; and, identifying the contributing factors. Similar to the Melissa Virus, some versions of the CR Worm will most likely continue to infect systems for some time. CR was just the beginning of the new types of problems we will have to face in the near future. CR illustrated how quickly a threat to the Internet can spread across the globe and how difficult it can be to halt. It is important that the lessons highlighted throughout this practical and from individuals' own experiences of this event, be used as another building block in an organization's overall defense-in-depth.
<<Reading Room Home     <<Back to Category

Contact us: (301) 654-SANS(7267)
Monday - Friday 9am-8pm EST/EDT