New round of slow SSH brute force attacks underway

From http://bsdly.blogspot.com/2009/10/third … armed.html">http://bsdly.blogspot.com/2009/10/third-time-uncharmed.html

"Spamwashers hijacked, a wake-up call for lazy sysadmins everywhere. The slow bruteforcers are back for another round."

James

4 Replies

And a linode host is in the list….

Oct 5 08:47:00 rosalita sshd[99997]: error: PAM: authentication error for root from 125.67.234.53 Oct 5 08:48:12 rosalita sshd[101]: error: PAM: authentication error for root from ipe-iptva02.man.newskies.net Odd choice for kernel.pid_max.

@jed:

Odd choice for kernel.pidmax. IIRC, MAXPID on BSD systems is normally 99999.

@Stever:

@jed:

Odd choice for kernel.pidmax. IIRC, MAXPID on BSD systems is normally 99999.
Ah, I saw PAM and assumed Linux. Good call.

Reply

Please enter an answer
Tips:

You can mention users to notify them: @username

You can use Markdown to format your question. For more examples see the Markdown Cheatsheet.

> I’m a blockquote.

I’m a blockquote.

[I'm a link] (https://www.google.com)

I'm a link

**I am bold** I am bold

*I am italicized* I am italicized

Community Code of Conduct