[3413] in WWW Security List Archive
Re: Port 137
daemon@ATHENA.MIT.EDU (Evil Pete)
Wed Oct 30 19:37:44 1996
To: www-security@ns2.rutgers.edu
From: Evil Pete <shipley@dis.org>
In-reply-to: Your message of Wed, 30 Oct 1996 10:49:44 -0500.
<199610301550.KAA27728@ns2.rutgers.edu>
Date: Wed, 30 Oct 1996 12:53:26 -0800
Errors-To: owner-www-security@ns2.rutgers.edu
>> I'm getting what I think are an unusual number of hits to my unserved
>> port 137. I've been told that those are NETBIOS hits sent out by PCs.
>> Does anyone know of any other software programs that try to use port 137?
>>
>
I am getting a system a day trying to connect to anyone of my WWW
servers I run from home (15 currently).
as for Securitym one can compromise a NT or W95 based WWW server, on a
unpatched system, with bug in netbios that allows anyone to access any
disk volume or printer.
-Pete