Apache Addresses DoS Attacks

LOS ANGELES — Responding to a serious security threat, Apache has issued a warning and an update to its server software that affected webmasters should consider.

The Apache Software Foundation and the Apache HTTP Server Project have released version 2.2.20 of the popular Apache HTTP Server software in an attempt to mitigate a recent wave of denial-of-service (DoS) attacks, which have reportedly been facilitated by the onslaught of the so-called “Apache Killer” hacking tool.

According to its publisher, the latest version of Apache is principally a security and bug fix release. It addresses the handling of byte-range requests associated with the Range and Range-Request headers, in order to consume less memory resources in an effort to fight advanced DoS attacks. For example, Apache reps note that if the total of all ranges in a request is larger than the original file, Apache 2.2.20 will ignore the ranges and send the complete file.

Apache reportedly powers more than 65 percent of all web servers, including the majority of adult websites, making security issues a widespread concern — and perhaps especially so for Apple computing fans, as the company includes Apache with Mac OS X — but handles its own software updates, forcing Mac-based server operators to wait for Apple to release its next operating system update.

“We consider this release to be the best version of Apache available, and encourage users of all prior versions to upgrade,” an Apache spokesperson stated.

Sophos’ “Naked Security” columnist, senior security advisor Chester Wisniewski, applauded the Apache team for so quickly testing and releasing this important security.

“Unfortunately, as we see all too frequently, many Linux and Unix administrators ‘set and forget’ their installations and never bother to look after their servers,” Wisniewski wrote. “Now it is up to you, the IT administrators who are using Apache, to follow through and apply these fixes.”

Webmasters should download the Apache HTTP Server 2.2.20 files from the official repository at https://httpd.apache.org/download.cgi, or contact their web hosting company to ensure that their sites are currently running this latest version of Apache.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

BranditScan Rolls Out 2 New Platform Features

BranditScan has introduced its new Traffic Optimization and Doxing Protection features for creators.

NMG Management Partners With Cosplayground to Scale Distribution

NMG Management has partnered with Cosplayground to expand the studio’s digital distribution and licensing operations.

Dreamcam Rolls Out 'Voice Translator AI'

Dreamcam has introduced a Voice Translator AI to its livestreaming platform.

UK Government May Limit 'Step' Porn Ban With New Amendments

The U.K. Ministry of Justice on Friday revealed new government amendments to the pending Crime and Policing Bill, potentially limiting a pending ban on “step” content to apply only if adult performers role-play as minors.

Arizona Senate Removes 'Catch-22' Provision From Consent Bill

The Arizona State Senate has amended a bill that would impose new requirements for adult content uploaded online, removing a seemingly contradictory provision that could have effectively made it impossible for adult sites to operate in the state.

Climaxx Media Launches Networking Platform

Climaxx Media has officially launched its new networking platform.

Italian Court in Aylo Case Limits International Reach of AV Rules

An Italian administrative court has ruled that Italy’s recently-enacted age verification rules for adult content may not currently be enforced against sites based in other EU member states, pending further procedural action under the EU’s Directive on Electronic Commerce.

OCC, FDIC Prohibit Use of 'Reputation Risk' by Regulators

The Office of the Comptroller of the Currency (OCC) and the Federal Deposit Insurance Corporation (FDIC) on Tuesday issued a final rule codifying the elimination of ‘reputation risk’ as a criterion in their supervision of financial institutions.

Wisconsin Governor Vetoes Age Verification Bill

Gov. Tony Evers on Friday vetoed AB 105, an age verification bill that would have allowed anyone to sue adult content providers for damages over alleged failure to age-verify users in Wisconsin, with penalties of up to $10,000 per violation.

FSC Releases Statement on Wisconsin Governor Vetoing AV Bill

The Free Speech Coalition has released a statement on Wisconsin Governor Tony Evers' veto of the state's age verification legislation.

Show More