Re: [Full-Disclosure] Automated SSH login attempts?

From: Andrew Farmer (andfarm_at_teknovis.com)
Date: 07/26/04

  • Next message: E.Kellinis: "[Full-Disclosure] Cross Site Scripting (XSS) on Google, Altavista ,Excite.com,Yahoo etc"
    To: Jay Libove <libove@felines.org>
    Date: Sun, 25 Jul 2004 16:11:32 -0700
    
    
    

    On 22 Jul 2004, at 07:47, Jay Libove wrote:
    > [ Posted to full disclosure and vulnwatch; please edit reply
    > address(es)
    > as appropriate. Thanks. -Jay ]
    >
    > My Linux system, and a Linux system run by a friend here in the same
    > city
    > but on a completely different netblock (different ISP), have both seen
    > apparently automated attempts to log in to our systems via SSH in the
    > past
    > few days. Looks like a script.

    I've seen the same, coming from hosts all over the Net. The accounts
    tried seem to be "guest", "test", "root", and "admin". First hit was
    around 11:15 PM PST, 22 July.

    
    

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html



  • Next message: E.Kellinis: "[Full-Disclosure] Cross Site Scripting (XSS) on Google, Altavista ,Excite.com,Yahoo etc"

    Relevant Pages

    • [Full-Disclosure] Automated SSH login attempts?
      ... My Linux system, and a Linux system run by a friend here in the same city ... Here are some log entries from my system: ... I have not seen any notes about this on the vulnerability disucssion ...
      (Full-Disclosure)
    • Re: [Full-Disclosure] Automated SSH login attempts?
      ... Jay Libove wrote: ... >My Linux system, and a Linux system run by a friend here in the same city ... and some log entries from my friend's system: ... >I have not seen any notes about this on the vulnerability disucssion ...
      (Full-Disclosure)