Interesting ....

Ben Duncan bend at linux4ms.net
Sun Jul 6 11:50:53 PDT 2008


True. It also true that the wrapper set up I have requires that the IP address
has reverse DNS lookup. Meaning that that the IP has to be traced back to
the correct Domain / IP / MAC otherwise simple spoofing the IP
will get you denied.


> I deny all traffic to ssh except from addresses I control (Work/home/mum/brother) 
 > so I don't have to worry about all those dictionary attacks.
> 
> The problem with the internet is you can basically iterate through all ip ranges
> and depending on what you do with your script you can find X fulnerable hosts. 
> It make me wonder how the evil script kiddies protect their prize once it's compromized. 
> Otherwise the hacked host would be getting snatched by a different bot net controller all the time. 


-- 
Ben Duncan - Business Network Solutions, Inc. 336 Elton Road  Jackson MS, 39212
"Never attribute to malice, that which can be adequately explained by stupidity"
        - Hanlon's Razor




More information about the Linux-users mailing list