Slash Boxes
NOTE: use Perl; is on undef hiatus. You can read content, but you can't post it. More info will be forthcoming forthcomingly.

All the Perl that's Practical to Extract and Report

use Perl Log In

Log In

[ Create a new account ]

Ovid (2709)

  (email not shown publicly)
AOL IM: ovidperl (Add Buddy, Send Message)

Stuff with the Perl Foundation. A couple of patches in the Perl core. A few CPAN modules. That about sums it up.

Journal of Ovid (2709)

Monday March 08, 2004
12:06 PM

Script Kiddie Security Company

[ #17809 ]

We just found out that someone is trying to hack one of our boxes. Initial research indicates that the attack is coming from a security consulting firm. The box runs apache and mod_perl. Naturally, this fact is listed in the headers (though admittedly, they can be spoofed). The attacker is using an ISS exploit. Hmm...

On the off chance that this has been officially sanctioned, I will be rather irritated. I told management a long time ago (and they agreed) that a basic risk analysis needs to be performed. We already know some issues. To have them quietly go out and hire a security consulting firm before we've had a chance to batten down hatches that we know are open is rather annoying.

The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
More | Login | Reply
Loading... please wait.