Interesting. When you received requests from these script kiddies did you
abide by them? Seems like a bit of a moral dilemma given attrition.org's
purpose (I'm a fan of the site BTW).
From: B.K. DeLong <email@example.com>
To: firstname.lastname@example.org <email@example.com>
CC: firstname.lastname@example.org <email@example.com>
Sent: Fri Apr 27 09:13:23 2001
Subject: Re: [Fwd: chinese hackers]
At 08:55 AM 04/27/2001 -0400, you wrote:
To be fair, there are many other ways to crack a site other than simple
defacements. Most hard-core crackers aren't interested in defacing a site
or even compromising a web server. Most companies avoid reporting
intrusions/server compromises making it difficult (if not impossible) to
determine the extent of damage.
I wholeheartedly agree however the reports so far have on the whole
concentrated on Web site defacements while briefly touching on DDoS, virii
and the like. We used to have kids email us and tell us to NOT mirror a
particular site so they could keep "root" and on IRC (EFNet and UnderNet)
you can see kids logging in all the time from IRC bounces set up on .gov
servers, prominent .coms etc.
-- B.K. DeLong firstname.lastname@example.org 617.877.3271
http://www.brain-stream. com Play. http://www.the-leaky-cauldron. org Potter. http://www.attrition. org Security. http://www.zotgroup. com Work. http://www.artemisiabotanicals. com Herb.
This archive was generated by hypermail 2b29 : Sun Apr 29 2001 - 20:26:17 PDT