RE: Scans for SSHd via RIPE netblocks, anyone?

From: Sean Kelly (lists@shortestpath.org)
Date: 10/22/01


Date: Mon, 22 Oct 2001 22:42:14 +0100 (BST)
From: Sean Kelly <lists@shortestpath.org>
To: Incidents List <incidents@securityfocus.com>
Subject: RE: Scans for SSHd via RIPE netblocks, anyone?
Message-ID: <Pine.LNX.4.21.0110222239330.31779-100000@random.ncl.ac.uk>

On Mon, 22 Oct 2001, fernando.cardoso@whatevernet.com wrote:

> Not only from this side of the Atlantic... I've seen a big increase in
> SSH scans in the last couple weeks.
[SNIP]

        Out of interests, is there a current SSH exploit going around?
As far as I knew SSH and OpenSSH were not exploitable when using the
current version.

        Thanks,

--
Sean Kelly

---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com



Relevant Pages

  • RE: Scans for SSHd via RIPE netblocks, anyone?
    ... Scans for SSHd via RIPE netblocks, ... I've seen a big increase in SSH ... A presente mensagem pode conter informação considerada confidencial. ...
    (Incidents)
  • Re: ssh with tcp_wrappers!! contd/-
    ... Thanks a lot for such a huge response, of course typing mistake, i was using DenyHost not DenyGhost; as suggested by david and others i did this, ... Login, as root, to my Linux system containing the sshd server. ... i am not willing to compile openssh package is there any way out via rpm installation. ... Then try to ssh to localhost. ...
    (RedHat)
  • Re: use ipchains to block all ports > 60,000
    ... else going on here except sshd which allows me to log in and monitor the ... Telnet not running but here's the ouput of ssh -V and sshd -V ... OK, ran that from an external box and it showed open ports 22, 80, plus ... My ISP looked for evidence of massive scans emanating from my ip address ...
    (comp.os.linux.security)
  • remote administration of upgrades
    ... server that I administer runs FreeBSD 4.8, ... have ssh access to ... don't want to fubar sshd and then not be able to ... kill only the ...
    (freebsd-questions)
  • Re: Is OpenSSH 3.5p1 secure?
    ... Do not allow root access over ssh. ... Do allow access over ssh for one and only one user. ... Here are a couple specific recommendations for you that you may wish ... Make sure your Protocol 2 RSA or DSA sshd keys are at the very ...
    (comp.security.ssh)