nanog mailing list archives

Re: Friday Reminder: Web Site Security


From: Mike Hale <eyeronic.design () gmail com>
Date: Fri, 15 May 2020 19:43:01 -0700

Big plus 1 to Bill's point.

On Fri, May 15, 2020, 6:37 PM William Herrin <bill () herrin us> wrote:

On Fri, May 15, 2020 at 4:25 PM Valdis Klētnieks
<valdis.kletnieks () vt edu> wrote:
On Fri, 15 May 2020 12:15:13 -0700, "Ronald F. Guilmette" said:
This is your helpful Friday reminder to always pay close attention to
the security settings of all of the web sites under your
administration.
Otherwise, anonymous skript kiddiez could show up at any moment and
deface one or more of your web sites.  (It happens a lot.)
https://ipv4.plus/

Just this week, I have seen an (unconfirmed) report that there is an
organized
effort that's abusing SSH keys that lack passphrases - if they pwn a
system and
find one, they go surfing it as far as they can.

You may have missed the schadenfreude in Ronald's post.

Give it a rest Ronald. You won.

Regards,
Bill Herrin

--
William Herrin
bill () herrin us
https://bill.herrin.us/


Current thread: