On Wed, 21 Jan 2015, Jeff Smith wrote to All:
JS> Any tips or suggestions as to a way to limit/avoids telnet login
JS> attacks on BBBS?
they're scripts looking for unpatched telnet servers or those that they can run
a dictionary attack against using the lists of usernames and passwords they
have gathered...
most are likey to be botnets since those folks over there seem to prefer to run
pirated OSes which can't or won't be patched... then again, many over there
probably don't even know they've been hacked and taken over...
i've found the best protection is in the perimeter firewall using an active
response system that blocks connections based on the traffic they transmit...
JS> Then there are those few that try to login via telnet as "Root".
JS> :-)
yeah, you should put that one as well as admin and administrator in your bad
names file... and 1234, 12345 as well and also in your bad passwords file...
)\/(ark
* Origin: (1:3634/12)
|