DNS attack




Just heard about the DNS attack. Anyone know how I
can tell if my server was involved (victim or zombified)?

Anything special to look for in my logs?

.



Relevant Pages

  • [NT] Authentication Flaw in Microsoft SMB Protocol Still Present After 3 Years
    ... Authentication is used to authenticate the client on the server. ... username to the target SMB server before prompting for password. ... gain access to a Victim Client. ...
    (Securiteam)
  • [NEWS] Multi-Vendor Game Server DDoS Advisory
    ... Beyond Security would like to welcome Tiscali World Online ... If it's supported by GameSpy and Server Query, ... victim will respond to the data with 10 ICMP Unreachable packets. ...
    (Securiteam)
  • Re: notrust alternative?
    ... Note that most of the apparent intruders have poll interval 16 s, which is not very likely and suggests you may be victim of a clogging attack. ... The ntpq lines are the result of a mobilized symmetric passive association, as the t field is u. ... you would not want most of them as peers; they seem to be clueless about what time it is (assuming that your server is correct). ...
    (comp.protocols.time.ntp)
  • Re: File and printer sharing suddenly broken
    ... I boot Victim into Safe Mode with Networking. ... Server is active on ... Modify This folder, ... I double click Everyone and see a long list of allowed permissions; ...
    (microsoft.public.windowsxp.security_admin)
  • [NEWS] Public ICQ Servers Based DDoS
    ... Public ICQ Servers Based DDoS ... all client-side packets are encoded, while server ones are ... redirecting the server's response traffic to the victim, ...
    (Securiteam)