OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: 3.9 coming out

From: Karsten McMinn (tenyougmail.com)
Date: Mon Apr 03 2006 - 12:12:13 CDT


On 4/3/06, Gordon Grieder <grubgrub.net> wrote:
>
> On Mon, Apr 03, 2006 at 02:40:50AM -0600, David B. wrote:
>
> > I just lost my entire development box to a hack this week, right through
> > smoothwall's DMZ. I had apache up, postgresql installed with the mod_php
> as
> > the middleware. All settings were default and the only port I had open
> was
> > 80 through smoothwall. I even had all packets dropped that came from
> asia,
> > south america and africa.

lack of security in your apache/php setup. To be frank you don't sound like
the type
that actually reads through a php.ini or who knows what a chroot is.

If thats the case then: 1) switch to openbsd 2) start reading (archives,
faqs and manuals)
3) try to save your job