Security Incidents mailing list archives

Re: Port 524: compromised machine with ndsd


From: Jens Hektor <hektor () RZ RWTH-AACHEN DE>
Date: Mon, 30 Oct 2000 20:39:59 +0100

But could be the standard
wu-ftpd or rpc.statd compromise also.

After checking the machine together with the admin
we found out that it has been the wu-ftpd exploit.

Jens Hektor


Current thread: