-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

On 05/09/12 11:16, Cyborg wrote:

> I had several hacks where the attackers exploited  a wordpress
> (etc.) , installed theire own spamming software, and used it to
> flood the world with unwanted mailspam.

FWIW, in a previous role we had a shared web hosting system where this
happened occasionally, so I used iptables to block users from making
outgoing connections on port 25 and then added per-uid rate limits to
the local Exim installation. Each website ran under its own uid.
Solved the problem entirely, with very little work.

- -- 
Mike Cardwell  https://grepular.com/     http://cardwellit.com/
OpenPGP Key    35BC AF1D 3AA2 1F84 3DC3  B0CF 70A5 F512 0018 461F
XMPP OTR Key   8924 B06A 7917 AAF3 DBB1  BF1B 295C 3C78 3EF1 46B4
-----BEGIN PGP SIGNATURE-----
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=z+O3
-----END PGP SIGNATURE-----

-- 
## List details at https://lists.exim.org/mailman/listinfo/exim-users
## Exim details at http://www.exim.org/
## Please use the Wiki with this list - http://wiki.exim.org/

Reply via email to