OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Artem 'Zazoobr' Ignatjev (timonmemphis.mephi.ru)
Date: Wed Feb 06 2002 - 05:05:30 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    > From owner-freebsd-securityFreeBSD.ORG Tue Feb 5 22:59:39 2002
    > Date: Tue, 05 Feb 2002 12:54:41 -0700
    > To: Victor Grey <victorcustomdynamic.net>, <freebsd-securityFreeBSD.ORG>
    > From: Brett Glass <brettlariat.org>
    > Subject: Re: Is this evidence of a break-in attempt?
    >
    > In a word, yes. Looks like they went to the box with a
    > keyboard and a mouse, rebooted, and tried to log in.
    > Clearly, they were so clueless that they did not know
    > about single-user mode.
    >
    Well, if console is marked as `insecure' (which is MY default policy)
    single mode couldn't help them too much.
    But there is a way to get contents of any file in root filesystem from
    loader(8), so they could get root hash.

    To Unsubscribe: send mail to majordomoFreeBSD.org
    with "unsubscribe freebsd-security" in the body of the message