Penetration Testing mailing list archives

Re: [PEN-TEST] advertising private IP numbers?


From: "Chris St. Clair" <chris_stclair () HOTMAIL COM>
Date: Wed, 27 Dec 2000 16:00:56 -0000

I came across this funny bit of RFC 1918 address leaking a while back
that I think has to be a honey pot:

sparky:/home/stclair> nslookup
Default Server: foo.net
Address: xxx.xxx.xxx.xxx

pix-fw.wan.aol.com
Server: foo.net
Address: xxx.xxx.xxx.xxx

Name:    pix-fw.wan.aol.com
Addresses:  152.163.190.1, 10.0.254.60


Please, please, please, please tell me this isn't actually
a PIX firewall on Aol's WAN with two RR for its internal
and external interfaces.

Is there a security equivalent of the Darwin awards?
_________________________________________________________________
Get your FREE download of MSN Explorer at http://explorer.msn.com


Current thread: