
Full Disclosure mailing list archives
Re: SSH brute force blocking tool
From: Simon Smith <simon () snosoft com>
Date: Tue, 05 Dec 2006 21:42:11 -0500
You have experience in disarming land mines with a hammer while you are stark naked? Now that¹s a real man¹s job! On 11/27/06 4:20 PM, "Brian Eaton" <eaton.lists () gmail com> wrote:
On 11/27/06, J. Oquendo <sil () infiltrated net> wrote:There is no hocus pocus here. Look at /var/log/secure and fine the term "error retrieving" and print the next line, 13th column. Then sort it and print the unique entries into /tmp/hosts.deny. After you do this, compare /tmp/hosts.deny with /etc/hosts.deny and put the differences not in /etc/hosts.deny into /etc/hosts.denyParsing malicious input with shell commands is like disarming land mines with a hammer. And doing it as root? That's like disarming land mines with a hammer while you're stark naked. Regards, Brian _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Re: SSH brute force blocking tool Tonnerre Lombard (Dec 01)
- Re: SSH brute force blocking tool J. Oquendo (Dec 01)
- Re: SSH brute force blocking tool Tonnerre Lombard (Dec 01)
- Re: SSH brute force blocking tool J. Oquendo (Dec 01)
- Re: SSH brute force blocking tool Raphael Marichez (Dec 01)
- Re: SSH brute force blocking tool Raphael Marichez (Dec 01)
- Re: SSH brute force blocking tool J. Oquendo (Dec 01)
- Re: SSH brute force blocking tool Tonnerre Lombard (Dec 01)
- <Possible follow-ups>
- Re: SSH brute force blocking tool Simon Smith (Dec 05)
- Re: SSH brute force blocking tool J. Oquendo (Dec 01)