Re: running vs. installed kernel

2009-10-08 Thread Guntram Trebs
2.6.28-15.52-server Cheers, Gunni -- Guntram Trebs freier Programmierer und Administrator g...@trebs.net +49 (30) 42 80 61 55 +49 (179) 519 82 39 (vorläufig) +49 (151) 55 85 85 55 -- To UNSUBSCRIBE, email to debian-security-requ...@lists.debian.org with a subject of "unsubscribe"

Re: HEAD's UP: possible 0day SSH exploit in the wild

2009-07-09 Thread Guntram Trebs
een you and the terminal window, install it's own public key on the server and try to hide this action from your cutomers by clearing the screen and closing the connection. So just keep insecure customers from having influence on your system or other customers. Greeting, Guntram --

Re: /dev/shm/r?

2009-06-02 Thread Guntram Trebs
he pam-related stuff were replaced also. Through this customised versions of ssh the cracker harvested every password that was used during ssh logins and ssh sessions. We are winning the battle and will in the next few weeks try do the analysis of what went wrong. Regards Johann --

Re: /dev/shm/r?

2009-06-02 Thread Guntram Trebs
firewall logs Good point is, when you can trace times of activity. But always keep in mind, that the information could be wrong. -- Guntram Trebs freier Programmierer und Administrator g...@trebs.net +49 (30) 42 80 61 55 +49 (178) 686 77 55 -- To UNSUBSCRIBE, email to debian-security-requ

Re: How safely to stop using backports repo?

2009-05-29 Thread Guntram Trebs
You say "usually"... Then, I can miss a package and that one will remain a breach in my system... No other tracking ideas? -- Guntram Trebs freier Programmierer und Administrator g...@trebs.net +49 (30) 42 80 61 55 +49 (178) 686 77 55 -- To UNSUBSCRIBE, email to debian-secur