[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] hacked? NetTracker



i had a similar problem (they were using windoze 95...), so i created a
often searched cgi file normally giving some interesting info about your
server that all scanners search for, and let them execute it. winnuke is
just one line of perl... :-P

(i won`t post instructions for dos attacks, so don`t ask for the code)

if they search for apache vulnerabilities, it is highly probable that
you got port scanned, too. normally a port scan is the first action
performed to see what services are available. you should consider
installing a detection system; portsentry is very good (and allows some
countermeasures, too...)

-- 

H. P.  Stroebel, Germany

CGI-FAQ for Raq-Newbies :
http://users.iol.it/hpstr/

Yes, I do. But not Yahoo.