RE: IIS web server hacked..any tips?

From: Gary Nichols (GNichols_at_phx1.bcbsaz.com)
Date: 12/16/04

  • Next message: Tim Igoe: "Re: IIS web server hacked..any tips?"
    Date: Wed, 15 Dec 2004 16:04:47 -0700
    To: <incidents@securityfocus.com>, <purdy@tecman.com>
    
    

    Francesco wrote:
    > Yesterday someone managed to access the server and dump 8GB
    > of DVD files into a deeply nested folder in a backup
    > directory, for sharing I presume. The payload folder was NOT
    > within the available folders given access to FTP users.
    > Someone was able to "see" the entire D drive and figure out a
    > hidden enough location at their whimsy.

    8GB in a single day? Are you *sure* that this wasn't one of your
    coworkers? :-)

    Tip: Are you running MRTG or some other type of bandwidth monitoring?
    This could help you isolate if it was indeed from the outside or the
    inside.

    ======================================
    Gary Nichols, CISM RHCE SEC+ IAM
    Information Security Officer
    Blue Cross Blue Shield of Arizona
    gnichols@phx1.bcbsaz.com
    602 864 5645

    The information in this E-mail message is confidential and for
    the sole use of the intended recipient. If you are not the
    intended recipient, you are hereby notified that any
    dissemination, distribution, copying or use of this information
    is strictly prohibited. If you received this communication in
    error, please notify the sender immediately. Blue Cross and
    Blue Shield of Arizona, Inc. and its subsidiaries and affiliates
    are not responsible for errors, omissions or personal comments
    in this E-mail message.


  • Next message: Tim Igoe: "Re: IIS web server hacked..any tips?"

    Relevant Pages

    • RE: cat *.txt > .txt...........roy
      ... #Prepare the insert SQL ... foreach my $file (@folder) ... privileged information. ... If you are not the intended recipient, ...
      (perl.beginners)
    • cat *.txt > .txt...........roy
      ... #Prepare the insert SQL ... foreach my $file (@folder) ... privileged information. ... If you are not the intended recipient, ...
      (perl.beginners)
    • MySQL+foreach loop.........roy
      ... I have a script that read some text file in the directory...All the data inside the text file then would be extracted into my sql, and i used foreach loop to read the text file, the doing some loop while data are sorted..Here is my code. ... foreach my $file (@folder) ... privileged information. ... If you are not the intended recipient, ...
      (perl.beginners)
    • Re: skel
      ... On Sun, 2004-03-21 at 21:38, Pinco wrote: ... > Where can I get information about the file contained in the folder ... Chadley Wilson ... by persons or entities other than the intended recipient is prohibited. ...
      (Fedora)