Full Disclosure mailing list archives

Re: Network Sniffing


From: Vincent Archer <varcher () denyall com>
Date: Mon, 6 Dec 2004 09:59:44 +0100

On Fri, Dec 03, 2004 at 01:19:58PM -0500, Valdis.Kletnieks () vt edu wrote:
Most crooks, be they burglars trying to score enough money for their next hit
of crack, or heads of state, end up getting caught because of stupid things
like masking tape put on wrong or a logfile entry for their wget command...

Or, in one case that still has us laughing around here, by leaving his
damn network sniffer running on the first pirated box which was running
gateway to the network, then doing ftp and logging in to his home box
to download the latest linux root exploit to run...

... on a machine that displayed "Welcome to FreeBSD 4.2" when he logged
in (using a ssh key from a user of the gateway above).

-- 
Vincent ARCHER
varcher () denyall com

Tel : +33 (0)1 40 07 47 14
Fax : +33 (0)1 40 07 47 27
Deny All - 5, rue Scribe - 75009 Paris - France
www.denyall.com

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: