Mind your back-up
Veritas tells the hole truth
Posted in Enterprise Security, 18th August 2005 16:27 GMT
Free whitepaper – Avoiding 7 common mistakes of IT security compliance
Symantec has warned of a security flaw in its Veritas Backup Exec and NetBackup software products which might be exploited to bypass security restrictions. Hackers are actively exploiting the vulnerability, US-CERT warns.
The vulnerability arises due to the use of a static password when authenticating to a remote agent. This in turn might allow hackers to bypass the authentication process and download arbitrary files from a vulnerable system. Tricky but the availability of publicly available exploits make this process far easier. Users are advised to apply patches, where available, or else restrict access to the service over port 10000/TCP, the standard port for the Remote Agent. ®
Free whitepaper – Vulnerability management buyer's checklist

Analyst Keynote: The Register Agile Data Center Summit
Enabling The Agile Data Center
Analyst Keynote: The Register Agile Data Center Summit
Breaching Fort Apache.org - What went wrong?
Snow Leopard security - The good, the bad and the missing
US Dems fill inboxes with 419 scams
BlockMaster SafeStick hardware-encrypted USB drive