[21574] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Exodus: this is bad

daemon@ATHENA.MIT.EDU (Richard Irving)
Mon Nov 16 20:14:30 1998

Date: Mon, 16 Nov 1998 19:05:50 -0500
From: Richard Irving <rirving@onecall.net>
Reply-To: rirving@onecall.net
To: Scott Lampert <scott@ioa.com>
CC: Adam Rothschild <asr@millburn.net>, nanog@merit.edu, list@inet-access.net

WOW, this is getting to be a plague......

I guess a *lot* of people will be brought to awareness
of the need to update their BIND, and tighten the security
on the DNS's....

Fast!


Scott Lampert wrote:
> 
> On Mon, Nov 16, 1998 at 05:30:39PM -0500, Adam Rothschild wrote:
> > Hrrrm, I'm seeing 38.29.63.195 trying to telnet to every IP addr in one of
> > my Exodus  /24's... (around 4.30p EST)
> >
> > Anyone notice any similar behaviour?
> 
> I'm seeing 207.15.190.170 probing snmp ports throughout a whole /22 here..
> 
> --
> +-----------------------+--------------------------------+
> | Scott Lampert         | Systems Administrator          |
> | scott@ioa.com         | Internet of Asheville          |
> |(828) 687-8848 Ext 310 | http://www.ioa.com             |
> +-----------------------+--------------------------------+

home help back first fref pref prev next nref lref last post