[dba-Tech] The Apache web server is full of holes

Jim Lawrence accessd at shaw.ca
Sun May 5 16:47:42 CDT 2013


All leading software packages are searched for vulnerabilities and as always
they are eventual be found. Apache's impact into the web server market is
huge with more than half of all web sites using this back-end.

Many holes have now been discovered and whether the Apache package should be
used for major sites is in debate. Maybe it is time to move to Nginx and
wait until the holes can all be properly plugged.

With packages such as the Blackhole exploit kit, available to any
script-kiddies,
(http://nakedsecurity.sophos.com/2012/03/29/exploring-the-blackhole-exploit-
kit/) it will be a while before Apache is safe to use again.   

Here is an interesting article on the current  
http://blog.sucuri.net/2013/04/apache-web-server-attacks-continue-to-evolve.
html

Jim  



More information about the dba-Tech mailing list