Apache Addresses DoS Attacks

LOS ANGELES — Responding to a serious security threat, Apache has issued a warning and an update to its server software that affected webmasters should consider.

The Apache Software Foundation and the Apache HTTP Server Project have released version 2.2.20 of the popular Apache HTTP Server software in an attempt to mitigate a recent wave of denial-of-service (DoS) attacks, which have reportedly been facilitated by the onslaught of the so-called “Apache Killer” hacking tool.

According to its publisher, the latest version of Apache is principally a security and bug fix release. It addresses the handling of byte-range requests associated with the Range and Range-Request headers, in order to consume less memory resources in an effort to fight advanced DoS attacks. For example, Apache reps note that if the total of all ranges in a request is larger than the original file, Apache 2.2.20 will ignore the ranges and send the complete file.

Apache reportedly powers more than 65 percent of all web servers, including the majority of adult websites, making security issues a widespread concern — and perhaps especially so for Apple computing fans, as the company includes Apache with Mac OS X — but handles its own software updates, forcing Mac-based server operators to wait for Apple to release its next operating system update.

“We consider this release to be the best version of Apache available, and encourage users of all prior versions to upgrade,” an Apache spokesperson stated.

Sophos’ “Naked Security” columnist, senior security advisor Chester Wisniewski, applauded the Apache team for so quickly testing and releasing this important security.

“Unfortunately, as we see all too frequently, many Linux and Unix administrators ‘set and forget’ their installations and never bother to look after their servers,” Wisniewski wrote. “Now it is up to you, the IT administrators who are using Apache, to follow through and apply these fixes.”

Webmasters should download the Apache HTTP Server 2.2.20 files from the official repository at https://httpd.apache.org/download.cgi, or contact their web hosting company to ensure that their sites are currently running this latest version of Apache.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

FSC Talks Age Verification on Capitol Hill

The Free Speech Coalition (FSC) has published a blog post detailing the organization's talks on age verification on Capitol Hill in Washington.

FTC Warns PayPal, Stripe, Visa, Mastercard Against Debanking

Federal Trade Commission Chairman Andrew Ferguson sent letters on Thursday to the CEOs of PayPal, Stripe, Visa and Mastercard, warning them against debanking practices — including denying access to services due to a customer’s lawful business activities.

AEBN Publishes Report on Ejaculate Trends

AEBN has published a report on ejaculate categories from its straight and gay theaters.

Chaturbate to Hold 'CB15' Creator Retreat in Arizona

Chaturbate will hold its CB15 creator retreat in Scottsdale from April 20-23.

EU Cites 4 Adult Sites for AV Breaches

The European Commission has preliminarily found PornHub, Stripchat, XNXX and XVideos to be in breach of Digital Services Act provisions intended to shield minors from adult content.

ProDx Health Joins SextPanther as New Testing Partner

ProDx Health has joined SextPanther as its new testing partner.

Kazumi Guests on Chaturbate's 'Sex Tales' Podcast

Kazumi is the latest guest on Chaturbate’s “Sex Tales” podcast, hosted by Melissa Stratton and Vanniall, and streaming on the company’s “Camming Life” YouTube channel.

WIFEY Publishes 'Hotwife Paradox' Report

Vixen Media Group studio imprint WIFEY has published a report on the hotwife lifestyle.

Pineapple Support Partners with Better Life Science's 'STD Hero'

Pineapple Support has partnered with Better Life Science brand STD Hero.

Brazil Sets Enforcement Timeline for New AV Rules

Brazil’s National Data Protection Authority (ANPD) on Friday published a timeline outlining planned steps for monitoring and enforcing age verification under the country’s Digital Statute for Children and Adolescents (Digital ECA), which took effect Tuesday.

Show More