Re: Strange command histories in hacked shell server

2004-12-18 Thread security
You should have a script that creates a new user when people login with 'new'. Have you forbid that script from overwriting your wheel account and re-creating root? Hi, Sorry for cross posting. I have with FreeBSD 5.3-stable server which serves as a public shell server. FreeBSD

Strange command histories in hacked shell server

2004-12-16 Thread Ganbold
Hi, Sorry for cross posting. I have with FreeBSD 5.3-stable server which serves as a public shell server. FreeBSD public.ub.mng.net 5.3-STABLE FreeBSD 5.3-STABLE #6: Wed Nov 24 15:55:36 ULAT 2004 [EMAIL PROTECTED]:/usr/obj/usr/src/sys/PSH i386 It has ssh and proftp-1.2.10 daemons. However