Our Website has been cracked!!!!

Josef Karthauser joe at tao.org.uk
Wed Jul 25 23:55:19 BST 2001


--8t9RHnE3ZwKMSgU+
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Wed, Jul 25, 2001 at 11:07:36PM +0100, Scott Mitchell wrote:
> On Wed, Jul 25, 2001 at 10:46:29PM +0100, Andrew Boothman wrote:
> > I know mine was, http://ukug.uk.freebsd.org/~andrew
>=20
> Mine as well -- there was no top level index.html but they got the one in
> ~scott/xe_drv/, for instance.
>=20
> > You can see what users are on the machine by looking in the /home/dogma=
=20
> > directory on the box.
> >=20
> > But, somebody with root *really* should remove all these pages, and=20
> > reinstall the box with the last known clean backup. Which might well=20
> > mean a reinstall from CD.....
>=20
> A bit of investigation to find out how this was done (so the hole can be
> plugged after the reinstall) would probably be a good idea too.  /var/log
> is amazingly empty, for one thing :-)

I used to have root on the box, but I can't remember the magic
invokation to get it! :(  Otherwise I'd install a new telnetd now.

Joe

--8t9RHnE3ZwKMSgU+
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (FreeBSD)
Comment: For info see http://www.gnupg.org

iEYEARECAAYFAjtfTlUACgkQXVIcjOaxUBahHACfZAKgGoVjI8dG7hQ1R3HwFk4L
AroAmwQ7bY0CUo0/On9fvWbet6ONMb6E
=EIxf
-----END PGP SIGNATURE-----

--8t9RHnE3ZwKMSgU+--




More information about the Ukfreebsd mailing list