Re: Sulk story

From: John Elsbury (johne_at_neveryoumind.co.nz)
Date: 07/24/03


Date: Wed, 23 Jul 2003 23:30:54 GMT

On 23 Jul 2003 21:51:22 GMT, Gianni Mariani <gi2nospam@mariani.ws>
wrote:

>
>I have a linux based firewall machine on my DSL line which is a small
>ISP in a box. It does my email, DNS, web serving and a little web presense.
>

>
>However, for the life of me I can't see any published certs or notes on
>the exploit that was used.
>
>I also know the IP address of the machine the ha0x3r used.
>
>What is the responsible thing to do with this info ?
>
>G
If you have details of the exploit method, and you are sure it's not a
known vulnerability which was exploited, forward them to CERT.

If you know the IP address from which the attack came, look up the
"owning" service provider and complain. It is very likely an "owned"
box, not the los sorry hack er's own box, but it least they can get
one exploitable box shut down.



Relevant Pages

  • Sulk story
    ... I have a linux based firewall machine on my DSL line which is a small ... ISP in a box. ... It does my email, DNS, web serving and a little web presense. ...
    (comp.security.misc)
  • Re: Sulk story
    ... > I have a linux based firewall machine on my DSL line which is a small ... > ISP in a box. ... It does my email, DNS, web serving and a little web presense. ...
    (comp.security.misc)