[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Hacked?? Telnet Connected But Not Activated?



On Thu, 19 Apr 2001, Wayne Sagar wrote:

} I suppose this is so... jezus.. it's only been two months since the damn
} thing was cracked last time, complete reinstall and upload... portsentry -
} log check.. very careful use of ssh and ssl for the gui.. It seems, if they
} want in badly enough, they get in the damn thing.

Hi Wayne,

	My experience is that most cracks are made possible by our
and our users mistakes. If you did a complete re-install and your
box is once again exploited, then perhaps you might want to start
thinking about running a cracker against the passwords used on the
machine and/or looking around to see what scripts your users are
running. In a situation such as this I'd venture a guess that either
you or one of your users has left a door wide open - an easily
guessed password or perhaps one of your users is running some
scripts that they shouldn't be.

	brent