As an aside that is hopefully not too OT, one of the boxes here was cracked once.
It was all because of a simple (human) error. POP3/FTP passwords
are sent plaintext, and so the system was configured to
have different passwords for POP3/FTP from the system
accounts. Unfortunately, due to laziness, I suppose, one of
the admins set their password to be the same for both and later
logged in from home to check their mail.
A few days later, our box was cracked with an off-the-shelf
"root kit". Even though we were using SSH, they were able
to "sniff" the POP3 password over their cable modem and
then log in using SSH, use SUDO, and have their way with
our system.
Thankfully the 'haX0r' only ran some sort of IRC bot or
relay program and didn't do any real damage.
Always make sure that your POP3 and FTP passwords are
not
the same as your SSH login! Especially for users with
'sudo' access!
Posts are HTML formatted. Put <p> </p> tags around your paragraphs. Put <code> </code> tags around your code and data!
Titles consisting of a single word are discouraged, and in most cases are disallowed outright.
Read Where should I post X? if you're not absolutely sure you're posting in the right place.
Please read these before you post! —
Posts may use any of the Perl Monks Approved HTML tags:
- a, abbr, b, big, blockquote, br, caption, center, col, colgroup, dd, del, details, div, dl, dt, em, font, h1, h2, h3, h4, h5, h6, hr, i, ins, li, ol, p, pre, readmore, small, span, spoiler, strike, strong, sub, summary, sup, table, tbody, td, tfoot, th, thead, tr, tt, u, ul, wbr
You may need to use entities for some characters, as follows. (Exception: Within code tags, you can put the characters literally.)
| |
For: |
|
Use: |
| & | | & |
| < | | < |
| > | | > |
| [ | | [ |
| ] | | ] |
Link using PerlMonks shortcuts! What shortcuts can I use for linking?
See Writeup Formatting Tips and other pages linked from there for more info.