Security Incidents mailing list archives

Re: new scanner tool or blind luck?


From: Josh Brandt <jbrandt () WPI EDU>
Date: Thu, 14 Sep 2000 14:27:41 -0400

Since 15 August there have been 271.

RR has no clue (or admits to none) of what is going on.

I bet it's lots of RR customers with the Chinese Worm (the notepad.exe
thing). Some cable modem providers filter 139 at the modem itself, to keep
people from screwing around with other people's Windows shares. Pity RR
doesn't do the same...

We found and canned about a dozen compromised student machines last week, by
the way.

Josh


Current thread: