[ale] 300,000 failed login attempts in 6 months!!!

Mike Harrison meuon at geeklabs.com
Tue Aug 19 20:36:24 EDT 2008


> my servers. I have two local vty's that spawn with a root shell if I
> ever manage to lock myself out of my box remotely, and not having to
> remember passwords is so incredibly convenient.

I've tracked down two cases of cascading server hacks at medium sized 
ISP's. ie: The gain access to one. The see the connects to the others in 
your .bash_history file.. and try it. Poof, they have your -other- servers 
as well. I -do- like the practice of keeping keys on a thumb drive...
and taking them with you.

As for server admins that use that technique to run commands across
multiple servers easily, there are other methods including using
SQL servers to handle such tasks.


More information about the Ale mailing list