[6757] in bugtraq
GNU SourceNavigator DEMO backdoor(gate,arch de triumphe)
daemon@ATHENA.MIT.EDU (Elmer Joandi)
Wed May 13 14:58:55 1998
Date: Wed, 13 May 1998 08:14:32 +0300
Reply-To: Elmer Joandi <elmer_j@UT.EE>
From: Elmer Joandi <elmer_j@UT.EE>
To: BUGTRAQ@NETSPACE.ORG
Well, it is useful to do netstat -ae periodicaly.
SN 4.0 demo for Linux listens on first free port on 0.0.0.0 *.*, even if
localhost name is set to 127.0.0.1 (default 0.0.0.0) in SN configuration.
most lovely command after telneting into it is "exec cat /etc/passwd"
There is no direct mentioning of "the feature" in documentation.
even if it can be explained (as everything can), not mentioning "the
feature" in a first place is a serious ...(place your paranoid expression
here)
It comes probably to the point that "there is no such thing as a free
lunch". But if there isn't, look at Sniff, www.takefive.co.at
Elmer Joandi
AS Cybernetica, http://www.cyber.ee/
http://www.ut.ee/~elmer_j/