OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Jedi/Sector One (jpureftpd.org)
Date: Sun Jun 23 2002 - 16:02:34 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Sun, Jun 23, 2002 at 07:31:56PM +0400, Alexander Yurchenko wrote:
    > Not only kill. Sending SIGSTOP to all child processes causes web server
    > to stop response to incoming requests at all. Nice DoS ;-)

      All descriptors to all log files (not only those associated with requested
    virtual host) are also passed to children.

      I was successfully able to add fake entries to every log file.
      
      Very funny when you are on a colocated server. Reading log files is
    probably as easy.
      

    -- 
     __  /*-      Frank DENIS (Jedi/Sector One) <j42-Networks.Com>     -*\  __
     \ '/    <a href="http://www.PureFTPd.Org/"> Secure FTP Server </a>    \' /
      \/  <a href="http://www.Jedi.Claranet.Fr/"> Misc. free software </a>  \/