Bugtraq mailing list archives

Re: finger-bombing


From: cklaus () shadow net (Christopher Klaus)
Date: Wed, 12 Oct 94 19:45:35 EDT



What is the best way to keep someone from finger-bombing
your site other than having fingerd cat /unix to stdout?

(other than hosts.deny.  We have a person who fingers
a user at our site from different hosts hundreds of times
per hour)

Contact the admins of those hosts and tell them to have it stopped.  
Also, modify inetd.conf and comment out finger and kill -HUP inetd
to restart it.


-- 
Christopher William Klaus  <cklaus () shadow net>  <iss () shadow net>
Internet Security Systems, Inc.         Computer Security Consulting
2209 Summit Place Drive,              Penetration Analysis of Networks
Atlanta,GA 30350-2430. (404)518-0099. Fax: (404)518-0030



Current thread: