Apache Addresses DoS Attacks

LOS ANGELES — Responding to a serious security threat, Apache has issued a warning and an update to its server software that affected webmasters should consider.

The Apache Software Foundation and the Apache HTTP Server Project have released version 2.2.20 of the popular Apache HTTP Server software in an attempt to mitigate a recent wave of denial-of-service (DoS) attacks, which have reportedly been facilitated by the onslaught of the so-called “Apache Killer” hacking tool.

According to its publisher, the latest version of Apache is principally a security and bug fix release. It addresses the handling of byte-range requests associated with the Range and Range-Request headers, in order to consume less memory resources in an effort to fight advanced DoS attacks. For example, Apache reps note that if the total of all ranges in a request is larger than the original file, Apache 2.2.20 will ignore the ranges and send the complete file.

Apache reportedly powers more than 65 percent of all web servers, including the majority of adult websites, making security issues a widespread concern — and perhaps especially so for Apple computing fans, as the company includes Apache with Mac OS X — but handles its own software updates, forcing Mac-based server operators to wait for Apple to release its next operating system update.

“We consider this release to be the best version of Apache available, and encourage users of all prior versions to upgrade,” an Apache spokesperson stated.

Sophos’ “Naked Security” columnist, senior security advisor Chester Wisniewski, applauded the Apache team for so quickly testing and releasing this important security.

“Unfortunately, as we see all too frequently, many Linux and Unix administrators ‘set and forget’ their installations and never bother to look after their servers,” Wisniewski wrote. “Now it is up to you, the IT administrators who are using Apache, to follow through and apply these fixes.”

Webmasters should download the Apache HTTP Server 2.2.20 files from the official repository at https://httpd.apache.org/download.cgi, or contact their web hosting company to ensure that their sites are currently running this latest version of Apache.

Related:  

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Italian Court in Aylo Case Limits International Reach of AV Rules

An Italian administrative court has ruled that Italy’s recently-enacted age verification rules for adult content may not currently be enforced against sites based in other EU member states, pending further procedural action under the EU’s Directive on Electronic Commerce.

OCC, FDIC Prohibit Use of 'Reputation Risk' by Regulators

The Office of the Comptroller of the Currency (OCC) and the Federal Deposit Insurance Corporation (FDIC) on Tuesday issued a final rule codifying the elimination of ‘reputation risk’ from their supervision of financial institutions.

Wisconsin Governor Vetoes Age Verification Bill

Gov. Tony Evers on Friday vetoed AB 105, an age verification bill that would have allowed anyone to sue adult content providers for damages over alleged failure to age-verify users in Wisconsin, with penalties of up to $10,000 per violation.

FSC Releases Statement on Wisconsin Governor Vetoing AV Bill

The Free Speech Coalition has released a statement on Wisconsin Governor Tony Evers' veto of the state's age verification legislation.

AV Bulletin: West Virginia Enacts AV Law, Ohio 'Innocence Act' Advances

This roundup provides an update on the latest news and developments on the age verification front as it impacts the adult industry.

Woodhull Survey Reveals Concern Among Sex Educators Over AV Laws' Impact on Access

A national survey of sex educators by the Woodhull Freedom Foundation found that a majority of sex educators and sexual health professionals are concerned that age verification (AV) laws will negatively impact access to information and resources.

Clips4Sale Wins Trademark Infringement Case Against Fraudulent Domain

The World Intellectual Property Organization (WIPO) has ruled in favor of content platform Clips4Sale in a case against a website using a similar domain to impersonate the site.

Pineapple Support, SextPanther to Host Stress Management Support Group

Pineapple Support and SextPanther are hosting a free online support group focused on stress management for performers.

Goddess Tangent Launches New Site Through Grooby's Blue.xxx

Goddess Tangent has launched her new membership site, TangentOD.com, through Grooby's website management company Blue.xxx.

Show More