Apache Addresses DoS Attacks

LOS ANGELES — Responding to a serious security threat, Apache has issued a warning and an update to its server software that affected webmasters should consider.

The Apache Software Foundation and the Apache HTTP Server Project have released version 2.2.20 of the popular Apache HTTP Server software in an attempt to mitigate a recent wave of denial-of-service (DoS) attacks, which have reportedly been facilitated by the onslaught of the so-called “Apache Killer” hacking tool.

According to its publisher, the latest version of Apache is principally a security and bug fix release. It addresses the handling of byte-range requests associated with the Range and Range-Request headers, in order to consume less memory resources in an effort to fight advanced DoS attacks. For example, Apache reps note that if the total of all ranges in a request is larger than the original file, Apache 2.2.20 will ignore the ranges and send the complete file.

Apache reportedly powers more than 65 percent of all web servers, including the majority of adult websites, making security issues a widespread concern — and perhaps especially so for Apple computing fans, as the company includes Apache with Mac OS X — but handles its own software updates, forcing Mac-based server operators to wait for Apple to release its next operating system update.

“We consider this release to be the best version of Apache available, and encourage users of all prior versions to upgrade,” an Apache spokesperson stated.

Sophos’ “Naked Security” columnist, senior security advisor Chester Wisniewski, applauded the Apache team for so quickly testing and releasing this important security.

“Unfortunately, as we see all too frequently, many Linux and Unix administrators ‘set and forget’ their installations and never bother to look after their servers,” Wisniewski wrote. “Now it is up to you, the IT administrators who are using Apache, to follow through and apply these fixes.”

Webmasters should download the Apache HTTP Server 2.2.20 files from the official repository at https://httpd.apache.org/download.cgi, or contact their web hosting company to ensure that their sites are currently running this latest version of Apache.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

U of Wisconsin Lawyers Admit to Political, Donor Pressure to Terminate Prof. Joe Gow Over OnlyFans Content

Lawyers for the Universities of Wisconsin admitted during a hearing Friday that the institution has received pressure from a Republican politician and from a donor to strip veteran UW professor of communications Joe Gow of tenure for unremorsefully creating and appearing in adult content.

Heritage Foundation Leader Kevin Roberts Doubles Down on Defense of Anti-Porn Project 2025

Heritage Foundation and current Project 2025 leader Kevin Roberts appeared on Fox News' Special Report with Bret Baier on Wednesday to defend the controversial conservative initiative, which includes a call to criminalize the production and distribution of pornography.

Open Mind AI Seeks Inclusion in EU's AI Debate

New European industry initiative Open Mind AI has penned a letter asking EU authorities to include adult companies and creators in ongoing discussions on setting up a legal framework for AI content.

Canadian Law Professor: Proposed Age Verification Bill 'Will Make Things Worse'

Leading Canadian newspaper The Globe and Mail this week published an op-ed written by a legal scholar outlining fundamental issues with the Conservative-backed age verification bill currently making its way through Parliament.

UK Labour Government Confirms it Will Continue Baroness-Led 'Porn Review'

The Labour government of U.K. Prime Minister Keir Starmer has confirmed it will continue the controversial full review of British pornography laws ordered by former Conservative Prime Minister Rishi Sunak in 2023.

AEBN Publishes Popular Searches for July and August

AEBN has released the top search terms for the months of July and August from its straight and gay theaters in all 50 states and the District of Columbia.

SWR Data Survey Probes Concerns About Political Attacks on Industry

SWR Data, an adult-sector market research firm led by industry veterans Mike Stabile and MelRose Michaels, has released data from its upcoming 2024 State of the Creator report, illustrating creators’ concerns about political attacks on the industry.

FSC Urges SCOTUS to Strike Down 'Unconstitutional' Texas Age Verification Law

The Free Speech Coalition (FSC) urged the U.S. Supreme Court through a brief filed Monday to strike down Texas’ age verification law as unconstitutional.

Japanese Manga Industry Hit by Credit Card Companies' Anti-Porn Restrictions

Japanese manga retailers are reporting pressure from multinational credit card companies — many based in the U.S. and targeted by anti-porn religious conservatives — to censor their content if they wish to maintain their current payment processing arrangements.

Netherlands Government Continues Porn Probe Following Abuse Allegations

The Dutch government plans to continue investigating the local porn industry in the Netherlands, following a series of abuse allegations involving photographer and self-styled “model scout” Daniël van der W.

Show More