[oclug] Question regarding being hacked

Dana Webber dana at dunrobin.dyn.dhs.org
Tue May 18 11:34:33 EDT 2004


On Tuesday 18 May 2004 02:35, Dave Lewis wrote:
> I run 7.3 box with

RedHat? they are NOT issuing security updates for that.

> apache  1.3.28
> proftpd Version: 1.2.9
> apache ssl Apache/1.3.28 Ben-SSL/1.52
> qmail 1.03
> courier-imap 1.6.1 ( I believe)
>
> and the box was behind a router with only ports
> 20-21, 80-110, 443, 993-995, 25
> open to that box.

There are a lot of vulnerabilities for 443  see,
http://isc.sans.org/port_details.php?port=443

Anonymous Ftp is OK. For password protection use sftp.

-- 
Dana Webber
dana at dunrobin.dyn.dhs.org
http://dunrobin.dyn.dhs.org

Getting a computer system to work is like banging your head against a brick 
wall until the wall falls down. 




More information about the OCLUG mailing list