Results 11 to 16 of 16
Originally Posted by xylex_blaiste
yeah, it seems kinda ridiculous. the IP could've been spoofed. i mean, that IP is being used by some Internet Company.
Unless you have control of ...
- 08-12-2004 #11Linux Guru
- Join Date
- Apr 2003
- Location
- London, UK
- Posts
- 3,284
Unless you have control of various upstream routers it is not possible to spoof an IP address for a direct TCP connection. UDP is a different matter, but SSH is TCP.
Originally Posted by xylex_blaiste
- 08-12-2004 #12Linux User
- Join Date
- Aug 2003
- Posts
- 289
it's not? i always hear about DNS poisoning and IP spoofing. guess it's not that simple, huh.. . hehehe.. .
how do i get more info from someone who might try to do that again, aside from the IP being logged? i've searched all of my logs and that's the only one i got - just the IP. it's lacking.Registered User #345074
- 08-12-2004 #13
- 09-03-2004 #14Just Joined!
- Join Date
- Aug 2004
- Posts
- 14
the Simplest thing you can do to avoid those pesky people is to make sure all ports (that are not being used) are closed. 24/7 It would still be possible to get in to your computer, but I can pretty much assure you that no "skriptkiddie" as they are sometimes called. Will be able to figure it out.
-m-
- 09-07-2004 #15Just Joined!
- Join Date
- Apr 2004
- Location
- UK
- Posts
- 61
You can be 95% sure that the box being used to attempt a connection to yours has been rootkitted.
It is worth notifying the abuse or tech contact (if given) from a whois so that they can take steps to secure their machine.
On each occasion where I have notified people about attempted access from thier system, they have confirmed that the box had been rooted.
- 09-13-2004 #16Just Joined!
- Join Date
- Aug 2004
- Location
- Helderberg Mountains- Upstate NY
- Posts
- 39
The addition of a non-alpha, non-numeric character adds exponential combinations to a password. By interspersing characters like %,$,^,+ and so forth will foil a lot of effort by hackers, like this:
Originally Posted by bluefoxicy
windwood-
password- w&i#n%d*w)o(o@d
Even just adding one or two adds 1000s of combinations.


Reply With Quote