Re: web security
From: Mike (michael.owen@hushmail.com)
Date: 02/12/03
- Next message: Mike: "Re: I LOVE computer security"
- Previous message: Security Alert: "SSRT3473 Potential Security Vulnerability in landiag/lanadmin"
- In reply to: Chad Cotton: "web security"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "Mike" <michael.owen@hushmail.com> Date: Wed, 12 Feb 2003 21:21:55 -0000
"Chad Cotton" <chad_cotton@hotmail.com> wrote in message
news:i9w2a.6457$in1.332382@twister.austin.rr.com...
> I am running a little home server and I keep getting hit by some sort of
> bot. They keep trying to get to various "/script" locations, which
luckily
> I don't have.
>
> The log shows that either a "404" or a "400" is being returned each time.
> That looks somewhat benign to me but I don't know what they may be getting
> access to.
>
> Does anyone know about this type of stuff or know what news group would be
> most appropriate for such querys?
If they're doing a lot of requests for things that are 404, they're probably
doing a slow scan for known exploits in things. Care to post some sanitised
logs?
-- Mike
- Next message: Mike: "Re: I LOVE computer security"
- Previous message: Security Alert: "SSRT3473 Potential Security Vulnerability in landiag/lanadmin"
- In reply to: Chad Cotton: "web security"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|