Full Disclosure mailing list archives

Re: SSH brute force blocking tool


From: gabriel rosenkoetter <gr () eclipsed net>
Date: Mon, 27 Nov 2006 16:49:20 -0500

On Mon, Nov 27, 2006 at 04:41:43PM -0500, J. Oquendo wrote:
That specially crafted attempt would be a HUGE raping of TCP/IP. How do 
you supposed it would be possible for someone to insert 0wn3ed or any 
other variable outside of an IP address?

That's impossible.

Putting extra spaces in the log entry is easy.

-- 
gabriel rosenkoetter
gr () eclipsed net

Attachment: _bin
Description:

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: