Hello all,
This is fairly urgent. Someone is trying to break into several of our web messaging
accounts. It's causing the accounts to be locked out after the login failure
threshholds are tripped. I haven't had much luck in the IPswitch KB or the list
archives.
It's easy to track down the users who are locked out, but it's not easy finding out
who's doing it-- the web messaging log doesn't seem to include any details about login
failures. POP and IMAP do, but the attack is coming in via web messaging.
I'm reasonably sure I know who the attacker is, but collecting evidence is obviously
required. Any insight would be greatly appreciated.
Thanks!
To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/