Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Not so much a bug as a warning of new brute force attack

Not so much a bug as a warning of new brute force attack

From: Brett L. Hawn <blh_at_nol.net>
Date: Sat, 1 Jun 1996 10:52:28 -0500

Last night nol.net was the recipient of a new brute force password attack
and I thought I'd share with you the attack and my reccomended solution.

The Attack:

Using the pop3 mechanism to crack user passwords

Given a file full of usernames and the standard 'dict file' one can
currently connect to the pop3 daemon and effiecently try passwords for a
user until the proper one is gotten or one runs out of passwords without any
noticeable effects on the server. I've tested this method myself using
several accounts and lots of random crap between valid passwords. A 3
account userfile with a 20k dictfile took appx 2 minutes to generare the
passwords for all 3 accounts.

Solution:

Implement random delay times, logging, and disconnection within the pop3
daemom

I am currently adding a random delay of 5-10 seconds after a bad password to
not only slow down, but possibly break the crack mechanism. Along with this
I am adding logging of any attempt that gives a bad password and a
disconnection scheme that will disconnect the process after 3 bad passwords.

Brett L. Hawn
Received on Jun 03 1996

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos