Apache Addresses DoS Attacks

LOS ANGELES — Responding to a serious security threat, Apache has issued a warning and an update to its server software that affected webmasters should consider.

The Apache Software Foundation and the Apache HTTP Server Project have released version 2.2.20 of the popular Apache HTTP Server software in an attempt to mitigate a recent wave of denial-of-service (DoS) attacks, which have reportedly been facilitated by the onslaught of the so-called “Apache Killer” hacking tool.

According to its publisher, the latest version of Apache is principally a security and bug fix release. It addresses the handling of byte-range requests associated with the Range and Range-Request headers, in order to consume less memory resources in an effort to fight advanced DoS attacks. For example, Apache reps note that if the total of all ranges in a request is larger than the original file, Apache 2.2.20 will ignore the ranges and send the complete file.

Apache reportedly powers more than 65 percent of all web servers, including the majority of adult websites, making security issues a widespread concern — and perhaps especially so for Apple computing fans, as the company includes Apache with Mac OS X — but handles its own software updates, forcing Mac-based server operators to wait for Apple to release its next operating system update.

“We consider this release to be the best version of Apache available, and encourage users of all prior versions to upgrade,” an Apache spokesperson stated.

Sophos’ “Naked Security” columnist, senior security advisor Chester Wisniewski, applauded the Apache team for so quickly testing and releasing this important security.

“Unfortunately, as we see all too frequently, many Linux and Unix administrators ‘set and forget’ their installations and never bother to look after their servers,” Wisniewski wrote. “Now it is up to you, the IT administrators who are using Apache, to follow through and apply these fixes.”

Webmasters should download the Apache HTTP Server 2.2.20 files from the official repository at http://httpd.apache.org/download.cgi, or contact their web hosting company to ensure that their sites are currently running this latest version of Apache.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

MomPOV Producer Pleads Guilty in GirlsDoPorn Case

MomPOV producer Doug Wiederhold, who was formerly the partner of GirlsDoPorn owner Michael Pratt as well as the first male talent for GDP, pleaded guilty Thursday to a federal conspiracy charge.

Streamate Exec Liz Rek Joins FSC Board

The Free Speech Coalition board of directors has tapped Streamate executive Liz Rek as its newest member, effective immediately.

2024 XBIZ Creator Awards Nominees Announced; Voting Now Live

XBIZ is pleased to announce the nominees for the 2024 XBIZ Creator Awards, presented by Fansly.

Adult Site Broker Talk's Bruce Friedman Reflects on Podcast Success

The 200th episode of “Adult Site Broker Talk” will air next week, with 2023 XBIZ Performer of the Year Cherie DeVille as the featured guest.

FSC Asks Supreme Court to Overturn 5th Circuit Decision, Strike Texas' Age Verification Law

Free Speech Coalition (FSC) filed a petition for certiorari on Friday asking the U.S. Supreme Court to overturn the Fifth Circuit panel decision that partially upheld Texas’ controversial age verification law.

Details Emerge About Capture, Arrest of GirlsDoPorn's Michael Pratt

Further details have emerged in the past week about the capture and arrest of GirlsDoPorn owner Michael Pratt in Spain in December 2022, following his extradition to the U.S. last month.

Magdalene St. Michaels, Andy Rodrigues Named as AEBN Top Stars for Q1 of 2024

AEBN has announced its top-selling stars for the first quarter of 2024, with Magdalene St. Michaels landing atop the leader board for straight theaters and Andy Rodrigues heading up the gay rankings.

YouPay Partners With IP Security Solution Sidenty

Australian gifting platform YouPay has joined forces with IP security solution Sidenty to help creators guard against online theft and unauthorized use of their content.

Grooby Launches Fetish Site 'Joey's Trans Feet Girls'

Grooby has debuted Joey's Trans Feet Girls, a new fetish membership site featuring foot content by top trans performers.

Lady Lyne Launches New Paysite Through AdultPrime

IMC’s AdultPrime has expanded its network of paysites with the launch performer Lady Lyne's official site.

Show More