Re: root or openssh exploited?
From: Randy Ramsdell (me_at_somewhere.else)
Date: 03/28/04
- Next message: Neil Ellwood: "Re: how deep do i need to dive ?"
- Previous message: Jem Berkes: "Re: root or openssh exploited?"
- In reply to: Jem Berkes: "Re: root or openssh exploited?"
- Next in thread: _at_(none): "Re: root or openssh exploited?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Sat, 27 Mar 2004 19:38:27 -0500
Jem Berkes wrote:
>>I am not aware of any rootkit that would not trojan those programs first.
>
>
> You guys aren't understanding what I'm talking about. I'm saying run
> tcpdump on a DIFFERENT host, connected to the ethernet cable. It has its
> own filesystem, own memory, own processor -- there is nothing in common
> with your rooted box.
>
I got you, but kev asked about local progs. should have reiterated your
point instead.
- Next message: Neil Ellwood: "Re: how deep do i need to dive ?"
- Previous message: Jem Berkes: "Re: root or openssh exploited?"
- In reply to: Jem Berkes: "Re: root or openssh exploited?"
- Next in thread: _at_(none): "Re: root or openssh exploited?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|