SCS Computing Facilities has received the following alert from Computing Services
Subject: DEPT: MS05-011 SMB vulnerability exploit code
If you haven't installed the latest hotfixes from Microsoft; you should get on it immediately. A public exploit for the SMB vulnerability is readily available (looks like Win2k only for now).
This is really bad because the vulnerability impacts all Windows Operating Systems. This is a huge vector for attacks. Dave Stevens from the Windows group pointed out that port 445 scans were up considerably. That was likely identifying targets or early versions of this exploit.
Once again, please get the latest hotfixes installed ASAP.
--------------------------------------------
Departmental Computing Group Mailing List dept-computing-group@lists.andrew.cmu.edu http://www.cmu.edu/computing/dept-computing
--------------------------------------------

