For anyone of you that has the good forture or admining NT boxes , look at
"securing windows NT/2000 server " by Oreilly really good guide of the
lovely task of securing NT /WIN2000 boxes
To be Recommended
BTW I have 7 NT boxes hosted co-lo'ed in the USA for huge amount of money
per month. The default installations of NT / 2000 , we got in the beginning
were the least hardened boxes I've ever seen. Dreadful.I mean ever if the
cmd.exe was ACLed !!!!.I think that NT admins are just lazy in comparision
to their *nix counterparts. That plus it much harder to remotely admin NT
boxes , but this has improved with termial services....
Are there many of you on the ILUG admin both wondoze and linux ? Is there a
Ireland windoze user group or mailing list???
Justin
-----Original Message-----
From: ilug-admin at linux.ie [mailto:ilug-admin at linux.ie]On Behalf Of Niall
O Broin
Sent: Friday, November 16, 2001 2:23 PM
To: ilug at linux.ie
Subject: [ILUG] Bloody script kiddies
Just had a look in the log file to which accesses to one of my web server
box's IP address goes i.e. requests not to one of the hosted domains. Since
Sept. there have been 23000+ attempts to get cmd.exe to do something and
4000+ attempts to find root.exe, and this is just on one lonely little box.
I wonder do script kiddies' attempts now use up more bandwidth than porn ?
And do some poor suckers actually have IIS boxes configured in such a way
that you can execute arbitray commands just by calling cmd.exe ?
Niall
--
Irish Linux Users' Group: ilug at linux.iehttp://www.linux.ie/mailman/listinfo/ilug for (un)subscription information.
List maintainer: listmaster at linux.ie
Maintained by the ILUG website team. The aim of Linux.ie is to
support and help commercial and private users of Linux in Ireland. You can
display ILUG news in your own webpages, read backend
information to find out how. Networking services kindly provided by HEAnet, server kindly donated by
Dell. Linux is a trademark of Linus Torvalds,
used with permission. No penguins were harmed in the production or maintenance
of this highly praised website. Looking for the
Indian Linux Users' Group? Try here. If you've read all this and aren't a lawyer: you should be!