[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-developers] !!!!!!!!!BIND Security has vulnerabilities!!!!!!!!!!



Kal,
    I later found out that a hacker was using my box to relay/distribute tools.  The hacker also
modified some config files that caused the bind update to destroy my OS.  At least the hacker did
less damage to my box than others.  I was able to back up all important data before wiping the OS,
and I am just now finishing the restore process.  I did not have any problems with the patch this
time around.

FYI

Sincerely,
William L. Thomson Jr.
Obsidian-Studios Inc.
439 Amber Way
Petaluma, Ca. 94952
Phone/fax 707.766.8989
http://www.obsidian-studios.com

----- Original Message -----
From: "Kal Amry" <kamry1888@xxxxxxxxx>
To: "William L. Thomson Jr." <webmaster@xxxxxxxxxxxxxxxxxxxx>
Sent: Saturday, February 24, 2001 7:49 PM
Subject: RE: [cobalt-developers] !!!!!!!!!BIND Security has vulnerabilities!!!!!!!!!!


> I've installed the patch without any problem on a Raq 4, any ideas why would
> it affect some systems and not the others??
>
> Kal
>
> -----Original Message-----
> From: cobalt-developers-admin@xxxxxxxxxxxxxxx
> [mailto:cobalt-developers-admin@xxxxxxxxxxxxxxx]On Behalf Of William L.
> Thomson Jr.
> Sent: Thursday, February 22, 2001 5:47 PM
> To: Cobalt Developers Group
> Subject: [cobalt-developers] !!!!!!!!!BIND Security has
> vulnerabilities!!!!!!!!!!
>
>
> Almost every Cobalt RaQ at my local ISP has been hacked via an exploitation
> of Bind.  Cobalt has
> released updates for Bind which may or may not be stable for all systems.
> When I updated a RaQ4r
> with the bind update my DNS, Telnet, FTP, POP,& IMAP all went down, and had
> a variety of problems I
> had to manually fix.
>
> For more info on Bind,
> http://www.isc.org/products/BIND/
>
> For the latest cobalt patches,
> http://www.cobalt.com/support/download/
>
> I also recommend anyone not using SSH to install it immediately as this was
> the only way I could
> access my server, not to mention the security it provides, in this unsecured
> world.
> http://pkg.nl.cobalt.com/
>
> Good luck, and remember its always better to be prepared and do the
> necessary maintenance or suffer
> the consequences.
>
>
> Sincerely,
> William L. Thomson Jr.
> Obsidian-Studios Inc.
> 439 Amber Way
> Petaluma, Ca. 94952
> Phone/fax 707.766.8989
> http://www.obsidian-studios.com
>
>
> _______________________________________________
> cobalt-developers mailing list
> cobalt-developers@xxxxxxxxxxxxxxx
> http://list.cobalt.com/mailman/listinfo/cobalt-developers
>
>
> _________________________________________________________
> Do You Yahoo!?
> Get your free @yahoo.com address at http://mail.yahoo.com
>
>