[95350] in RedHat Linux List
Re: Off-topic: Break-in attempts
daemon@ATHENA.MIT.EDU (Gary Stanleu)
Sat Oct 17 05:41:53 1998
Date: Sat, 17 Oct 1998 05:41:48 -0400
To: redhat-list@redhat.com
From: Gary Stanleu <ancient@nws.net>
In-Reply-To: <36286435.D5E744E0@home.com>
Resent-From: redhat-list@redhat.com
Reply-To: redhat-list@redhat.com
>I have a permanent internet connection at home via a cable modem.
>Because I was hacked into last year due to the bind exploit, I have
>disabled all outside access in my /etc/hosts.deny file. I check my
>/var/log/secure file regularly, and almost almost every day, access
>attempts are made. Many of these attempts will use every possible port
>and protocol to get access. Since my IP address is not published
>anywhere, I'm reasonably sure that most of these access attempts, which
>are all denied, are not for legitimate purposes
Being an ex-hacker, I used to scan entire class b's and c's for hackable
machines. It would appear that's what happening to your machine, being
probed for any and all weaknesses. Only thing I can tell you is do NOT run
services that you never use. :-)
Gary Stanley
Stable Networks Chief Engineer.
--
PLEASE read the Red Hat FAQ, Tips, Errata and the MAILING LIST ARCHIVES!
http://www.redhat.com http://archive.redhat.com
To unsubscribe: mail redhat-list-request@redhat.com with
"unsubscribe" as the Subject.