[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-security] have I been 0wn3d?



Coming from someone who's been on vacation for the past week, please understand that when I came back and read all the cobalt security posts on the new apache worm (and read the other news articles claiming that 6,000 linux servers have been hit already), I'm a bit freaked out.

Of course, the fact that I ran Gerald's logfile parser script and returned hits didn't help either.

Oh yes, finally ... I did an nmap -sU -p 2002 and found it open. =(

So basically, there's plenty of info on this list for me to protect myself, but I'm afraid that I've already been owned. Can someone give me a bit of insight as to how to find out for sure?

many thanks,
--pete

We are all corporate whores - name your price.