Full Disclosure mailing list archives
RE: Spam Solution
From: "Larry Seltzer" <larry () larryseltzer com>
Date: Sat, 19 Jun 2004 05:22:29 -0400
Well, spammers are trying to crack accounts through SMTP AUTH for quite a long time -
this was mentioned in news more than once.
Check following threads:
All that appears to be weak username/password attacks. The reports also all say it's against Exchange and they blame Exchange, not knowing that Exchange uses Active Directory and can therefore will block this sort of thing if your network is set up to block it. Anyway, I guess this is a decent way to attack any SMTP server as it is to attack any network at all. Do intrusion scanners test for weak SMTP AUTH credentials these days? Larry Seltzer eWEEK.com Security Center Editor http://security.eweek.com/ http://blog.ziffdavis.com/seltzer larryseltzer () ziffdavis com _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Re: Spam Solution, (continued)
- Re: Spam Solution Nick FitzGerald (Jun 18)
- Re: Spam Solution Alavan (Jun 18)
- Re: Spam Solution Gadi Evron (Jun 18)
- Re: Spam Solution Alavan (Jun 18)
- Re: Spam Solution Gadi Evron (Jun 18)
- RE: Spam Solution Larry Seltzer (Jun 18)
- Re: Spam Solution Gadi Evron (Jun 18)
- Re: Spam Solution Valdis . Kletnieks (Jun 18)
- RE: Spam Solution Larry Seltzer (Jun 18)
- Re: Spam Solution Valdis . Kletnieks (Jun 18)
- RE: Spam Solution Larry Seltzer (Jun 18)
- RE: Spam Solution Bojan Zdrnja (Jun 19)
- RE: Spam Solution Larry Seltzer (Jun 19)
- Re: Spam Solution Aditya, ALD [ Aditya Lalit Deshmukh ] (Jun 20)
- Re: Spam Solution Nick FitzGerald (Jun 18)
- RE: Spam Solution Max Mustermann (Jun 19)
- RE: RE: Spam Solution Larry Seltzer (Jun 19)
- Re: RE: Spam Solution Valdis . Kletnieks (Jun 21)
