Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's not IIS. It's HTTP.SYS. New configs have Powershel remote or WinRM. They use http.Sys and are vulnerable.


Seems I'm wrong. Kernel cache has to be enabled explicitly and Powershell/WinRM don't do that. Whew.


We all dodged a bullet there.


They really should have made it clear that it's a mitigating factors and that most (some, many?) non-IIS uses wouldn't use kernel caching and thus be OK.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: