Quoting Darryl Barlow <[EMAIL PROTECTED]>:

I had the pleasure some years ago of a cracker gaining access to a Linux box
on my work Network running SME Server.

I still do
not know how the attacker located the machine.  I presume it was probably
through a port scan .....

I have seen the same thing with other installs of SME Server. The machines I saw it on were properly firewalled and not even visible.

People I know have come to the conclusion that it was software already embedded within the system at distribution. It got activated in idle time. It was doing spam mass mailing.

I wonder if this is what you experienced ?

David

--
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html

Reply via email to