rootshell hacked via ssh-1.2.26 (fwd)

Marek Obuchowicz elephant at shadow.eu.org
Thu Oct 29 19:02:26 CET 1998


hmmm... dość niepokojąca sprawa...


-- 
  Marek Obuchowicz, Member of the GNU generation

---------- Forwarded message ----------
Date: Thu, 29 Oct 1998 00:14:58 +0100
From: Felix von Leitner <leitner at MATH.FU-BERLIN.DE>
To: BUGTRAQ at NETSPACE.ORG
Subject: rootshell hacked via ssh-1.2.26

On the rootshell home page, there is this notice:

   Rootshell Defaced
   10/28/98 8:44AM PDT On Wed Oct 28th at 5:12AM PST the main Rootshell
   page was defaced by a group of crackers. Entry to the machine was made
   via SSH (secure shell) which is an encrypted interface to the machine
   at 04:57AM PST this morning. Rootshell was first informed of this
   incident at 6:00 AM PST and the site was immediately brought offline.
   The site was back up and operational by 8:00AM PST.

They also mention that they used ssh-1.2.26 (the current version) and
their port 22 is not blocked (presumably firewalled away).

Does anyone have any further info?  This should probably leave a _lot_ of
us quite restless tonight...

Felix



More information about the pld-devel-pl mailing list