Full Disclosure mailing list archives

Re: Patched Solaris Boxes being Hacked??


From: "Larry W. Cashdollar" <lwc () vapid ath cx>
Date: Mon, 5 Jan 2004 15:05:11 -0500 (EST)



On Mon, 5 Jan 2004, Compton, Rich wrote:

appears to be a multi-vector attack, using finger, rpcbind, and ftp. In one

It's probably a bad idea to even be running these services in the first
place.  It maybe old school hacks that are getting these boxes
compromised, like finger 0@solaris_host and guessing passwords.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: