By Anonymous CowardPosted Friday 14th December 2007 23:48 GMT
Dear Sir/Madam,
Your claims of being an El Reg Hack are currently being put into doubt. In order to re-establish your good name, I hereby require you to respond to the following question:
By Anonymous CowardPosted Friday 14th December 2007 23:57 GMT
There are a number of exploits that get loaded into Apache and then affect all sites hosted on the server. Tight sysadmin can make it harder for these varmints to get in. It sounds to me like this might be what happened here.
One for the mone, two for the road, three to get ready,... #
By tempemeatyPosted Saturday 15th December 2007 00:48 GMT
Some times it's not what the Exec in a corp says but what he does(over a period of time) that tells you what their real intentions are. So do we go for three? ;)
By jeremyPosted Sunday 16th December 2007 17:07 GMT
Apache on its native *nix system does not use DLLs as they are windows implementation. Sure it uses libraries but it is a bit harder to convince a *nix system to load unauthorised ones...
By Mike HockerPosted Sunday 16th December 2007 22:58 GMT
Only do critical (i.e., related to money) work on a machine that doesn't cruise unfamiliar websites. Use that old dusty obsolete box for searches, then you (mostly) don't care if it is infected-- image the drive and re-install every now and then, no reason to waste money on antivirus for the dustbox.
Or use Knoppix or another read only media OS. There is no real reason to have only 1 physical machine anymore.
You can also use a brouter / EtherReal (or Snort/Ntop) and sniff what back alleys your PC is really visiting when you aren't watching! A TB drive will store a couple of years of trace information for most people if you aren't hooked on youtube or BitTorrent or such.
The only reason most of us haven't had our identities stolen yet, is that there are just soooo many easier targets... totally unprotected machines waiting to be plucked, or machines manned by children, while we all have at least antivirus, firewall, and don't promiscuously share admin/superuser privileges right? Eh... I don't see too many hands raised out there....
By Anonymous CowardPosted Monday 17th December 2007 09:49 GMT
Some of us have actually bred and (and even live with a significant other), have neither the time, money or inclination to play Mr (or Ms) security expert at home
Also when it's your day (and fecking takes up too many nights too) you really will not be pouring over such items in what little spare time one actually has.
I do agree with the need for something like smoothwall (& a proxy) like rather than the pretty useless so called software firewalls.
Also your "May contain highly technical ...." icon / avatar was just embarrasing (but then there isn't one for "Lives at home with Mum and still plays Magic the Gathering")
By Steve BPosted Monday 17th December 2007 11:27 GMT
I was doing some testing on my internal website using ie7 and scoped the traffic to try and find a bug. I was surprised to find that packets containing my typed data were being sent to an external IP address registered to MS, even while the real web dialogue was going on between the internal machines.
By Joseph SwickPosted Monday 17th December 2007 15:45 GMT
The only infection you probably have is from Microsoft. They've had the audacity in the past to look at what you're doing on your computer with Win95, and they're doing it again in Vista (and probably IE 7 as well).
Comments on: S&M blogger outs web host malware attack
Anonymous Title #
By Anonymous Coward Posted Friday 14th December 2007 23:48 GMT
This is probably a DLL exploit #
By Anonymous Coward Posted Friday 14th December 2007 23:57 GMT
One for the mone, two for the road, three to get ready,... #
By tempemeaty Posted Saturday 15th December 2007 00:48 GMT
@ Anonymous Coward.... #
By Daniel Gallacher Posted Saturday 15th December 2007 05:30 GMT
@DLL exploit #
By jeremy Posted Sunday 16th December 2007 17:07 GMT
Good Use for Old PCs #
By Mike Hocker Posted Sunday 16th December 2007 22:58 GMT
@mike hocker #
By Anonymous Coward Posted Monday 17th December 2007 09:49 GMT
Have I been infected? #
By Steve B Posted Monday 17th December 2007 11:27 GMT
@Steve B #
By Joseph Swick Posted Monday 17th December 2007 15:45 GMT
@Daniel Gallacher #
By Anonymous Coward Posted Monday 17th December 2007 19:32 GMT