OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-Disclosure] Patched Solaris Boxes being Hacked??

From: Larry W. Cashdollar (lwcvapid.ath.cx)
Date: Mon Jan 05 2004 - 14:05:11 CST


On Mon, 5 Jan 2004, Compton, Rich wrote:

> appears to be a multi-vector attack, using finger, rpcbind, and ftp. In one

It's probably a bad idea to even be running these services in the first
place. It maybe old school hacks that are getting these boxes
compromised, like finger 0solaris_host and guessing passwords.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html