OT: Internet Risks


[ Follow Ups | Post Followup | Return to QRP Forum ]



Posted by:  John, WB8RCR

Posted On:  08/12/00

Subject:  OT: Internet Risks

Message Posted:

I have been running a firewall for some time now, and when I first started paying attention, I was amazed at how often I was probed for weaknesses.

Over the past few months, things seem to have quieted down, but over the last few days, I've taken a surprising number of hits from all over the world on my FTP port. If you are running an FTP server (or Microsoft's Personal Web Server) I would be real sure my FTP port was buttoned up pretty tight. I assume that some hacker somewhere has discovered a new FTP exploit that's making the rounds, but I didn't see anything in the security notices.

Also, if you are running Netscape version 4.74 or earlier, TURN OFF JAVA. A very nasty Java exploit was recently pointed out in the X-Force security alert. Internet Explorer is not affected by this problem.

This attack actually installs a server on your machine so you are vulnerable even after you have shut down your browser. The server can be configured by the attacker to use any port, but the default is 8080. Of course, you should be regularly checking netstat for unexpected ports - right??



Follow Ups:




Post a Followup

Name/Call:
E-Mail:
Subject:
Message to Post:
Use Fixed Width Font (Useful for lining up columns of data in log sheets)
Link URL:
(This can be a link to a web page or anything else.)
Link Name:
(This is an optional description or title for the URL above.)
Picture:
(This must be the full address of a .JPG or .GIF)
Check this box to receive an e-mail when someone replies to your message


 


[ Posting Rules | Follow Ups | Return to QRP Forum ]