Bugtraq mailing list archives

Re: Sendmail hole ?


From: ole!rwing!pat () nwnexus wa com (Pat Myrto)
Date: Sat, 9 Apr 94 18:47:04 PDT


"In the previous message, Manish N. Dharwadker said..."

Excuse me for upsetting the sensiblilities of ppl. on this list but this
was posted to the list on march 16 when no details were available.

Subsequently I got the details and have archived them.

I really think that details should be posted as soon as possible as
I have been a victim of a alleged p0sse rm -rf and a lame system
administrator.

I second that, a site I do some things on has also been accessed by what
might have been the same bunch.  Now I keep a copy of everything off
site, and anything on site for current work is kept encrypted via des.
Any attempted changes in the stuff will be immediately obvious on
attempted decryption, as the result will be garbage.

There really is no other choice, when one hasn't got total control of
the site and backups, etc.

-- 
pat@rwing  [If all fails, try:  rwing!pat () ole cdac com]  Pat Myrto - Seattle WA
"No one has the right to destroy another person's belief by demanding
empirical evidence."  --   Ann Landers, nationally syndicated advice columnist
and Director at Handgun Control Inc.



Current thread: