tony@secapl.com
Tue, 3 Nov 1998 10:21:36 -0500 (EST)
On Tue, 3 Nov 1998 acpizer@mach.unseen.org wrote:
> There is 1 user account on the rootshell box, the same user had an
> account on another maehicne, somewhere, he was using the same password
> on both, the attacker found the usere's password on machine A and went
> to try it on machine B.
Password compromise was my first hypothesis when I heard about it last
wednesday, but I have no first-hand knowledge. Certainly the easiest way
to attack ssh, as it's not really ssh you're attacking, but then this is
not germane to CodherPlunks, so sorry for taking an off-topic turn. ;-)
The following archive was created by hippie-mail 7.98617-22 on Sat Apr 10 1999 - 01:17:17