Message Area
Casually read the BBS message area using an easy to use interface. Messages are categorized exactly like they are on the BBS. You may post new messages or reply to existing messages!

You are not logged in. Login here for full access privileges.

Previous Message | Next Message | Back to Linux BBSing  <--  <--- Return to Home Page
   Networked Database  Linux BBSing   [61 / 189] RSS
 From   To   Subject   Date/Time 
Message   mark lewis    Ignatius   Unwanted connections to port 23.   June 12, 2017
 4:35 AM *  

 On 2017 Jun 12 00:54:18, you wrote to All:

 Ig> I've since recently put my board back on port 23... and I now recall
 Ig> why I took it off of it. I keep getting all of these connections from
 Ig> hackers, I take it.

they are not hackers... at best they are skiddies but in reality, it is the
MIRAI botnets trying to see if your system is a vulnerable IoT (Internet of
Things) device like an IP Camera or a DVR or smart TV and similar... anything
that has default login credentials hardcoded in it...

 Ig> Anyone know of a way to filter these bad connections?

there is none, really... you have to let them connect and then dump them based
on the data they shove at you without waiting for any prompts... yes, that's
right... they do not look for and respond to any sort of login prompts... they
just start spewing their login stuff followed by the shell commands to fire off
 busybox...

 Ig> I've tried Janis' iptables suggestion, but it isn't working.

intrusion detection systems are the only things i've seen that come close but
the connection and attempted login still has to take place... the *ONLY* other
option is to get off of port 23 and the other few that MIRAI specifically
targets... that includes the default SSH port as well...

)\/(ark

Always Mount a Scratch Monkey
Do you manage your own servers? If you are not running an IDS/IPS yer doin' it
wrong...
... WANTED: Meaningful overnight relationship.
---
 * Origin:  (1:3634/12.73)
  Show ANSI Codes | Hide BBCodes | Show Color Codes | Hide Encoding | Hide HTML Tags | Show Routing
Previous Message | Next Message | Back to Linux BBSing  <--  <--- Return to Home Page

VADV-PHP
Execution Time: 0.1396 seconds

If you experience any problems with this website or need help, contact the webmaster.
VADV-PHP Copyright © 2002-2024 Steve Winn, Aspect Technologies. All Rights Reserved.
Virtual Advanced Copyright © 1995-1997 Roland De Graaf.
v2.0.140505

Warning: Unknown: open(c:\Sessions\sess_9pvp33tfleh17h4d1mu3q60807, O_RDWR) failed: No such file or directory (2) in Unknown on line 0 Warning: Unknown: Failed to write session data (files). Please verify that the current setting of session.save_path is correct (c:\Sessions) in Unknown on line 0 PHP Warning: session_start(): open(c:\Sessions\sess_9pvp33tfleh17h4d1mu3q60807, O_RDWR) failed: No such file or directory (2) in D:\wc5\http\public\VADV\include\common.inc.php on line 45 PHP Warning: Unknown: open(c:\Sessions\sess_9pvp33tfleh17h4d1mu3q60807, O_RDWR) failed: No such file or directory (2) in Unknown on line 0 PHP Warning: Unknown: Failed to write session data (files). Please verify that the current setting of session.save_path is correct (c:\Sessions) in Unknown on line 0