[121879] in North American Network Operators' Group
SSH brute force China and Linux: best practices
daemon@ATHENA.MIT.EDU (Bobby Mac)
Fri Jan 29 23:48:37 2010
Date: Fri, 29 Jan 2010 22:47:57 -0600
From: Bobby Mac <bobbyjim@gmail.com>
To: nanog@nanog.org
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
Hola Nanog:
So after many years of a hiatus from Linux, I recently dropped XP in favour
of Fedora. Now that my happy windows blinders are off, I see alarming
things. Ugly ssh brute force, DNS server IP spoofing with scans and typical
script kiddie tactics.
What are the new set of best practices for those running a NIX home
computer. Yes I have a firewall and I do peruse my logs on a regular
basis.
BTW: ever drop a malformed URL to alert an admin to some thing that sucks?
w3.hp.com/execs/makes/too/much/money or
www.yourbuddiesdomain.com/it/is/all/rfc/space/use/1918/when/referring/to/non/routable
Thanks,
BobbyMac