Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Security Incidents: Re: CGI Scans on web server

Re: CGI Scans on web server

From: Jay D. Dyson <jdyson_at_treachery.net>
Date: Fri, 8 Dec 2000 04:44:27 -0800

-----BEGIN PGP SIGNED MESSAGE-----

On Tue, 5 Dec 2000, Bjorn Djupvik wrote:

> Is people still doing this? These are ancient exploits but I still got
> scanned for them.. ahh well....

        Yep, people are still scanning for them. In a way, it makes
sense: why go out of your way to look for a hole in a (presumably)
reinforced front door when the back window is wide open?

        The only thing I wish these scriptmonkeys would do differently is
at least do a HEAD request or an 'nmap -p80 -O' on the target system
before launching their scan utilities. At least then my logs wouldn't get
bloated by so many IIS intrusion attempts on my Solaris/Apache servers.

- -Jay

   ( ______
   )) .-- "There's always time for a good cup of coffee." --. >===<--.
 C|~~| (>------- Jay D. Dyson --- jdyson_at_treachery.net -------<) | = |-'
  `--' `- I'm not surrounded, I just have more targets now. -' `-----'

-----BEGIN PGP SIGNATURE-----
Version: 2.6.2
Comment: E-mail me for my PGP Public Key.

iQCVAwUBOjDXtdCClfiU/BIVAQH89wQAuR2dERHDpwrP7AGNwlSzWihi3nYBgkof
DEO7/lDRNu1zC50+0X+XTPW4nbiZq7EoMvTyGSVcivZfWrFTBiJzuYZEMGayppGI
p+sNcFQ4VsLZjCEekX/c2aHSVz0sZXX49rzqOHPRiRBdU6806oqTWIUJbOKRLLjx
iODVpdCGZXY=
=zRxJ
-----END PGP SIGNATURE-----
Received on Dec 12 2000

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos