Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 28 Jul 1997 22:05:43 -0700
From:      "Jordan K. Hubbard" <jkh@time.cdrom.com>
To:        Vincent Poy <vince@mail.MCESTATE.COM>
Cc:        security@FreeBSD.ORG, "[Mario1-]" <mario1@PrimeNet.Com>, JbHunt <johnnyu@accessus.net>
Subject:   Re: security hole in FreeBSD 
Message-ID:  <6647.870152743@time.cdrom.com>
In-Reply-To: Your message of "Mon, 28 Jul 1997 17:03:19 PDT." <Pine.BSF.3.95.970728170156.3844H-100000@mail.MCESTATE.COM> 

next in thread | previous in thread | raw e-mail | index | archive | help
> =)That proves absolutely nothing.  You think I can't hack a telnetd to
> =)provide multiple "services?"  Wake up, Vinnie! :-)
> 
> 	Ofcourse you could but you're not in the same type of hacking
> business this guy is in.  This is a log of a irc chat session.

My essential point remains unchanged.  You can trust NONE of the
binaries on your system now and it's strongly suggested that you
reinstall whatever you cannot, through mtree/tripwire database checks,
verify as absolutely pristine.  I also suggest that you guys invest in
a CDR drive and use it for periodic construction of trusted backup
images.  For an ISP, the cost/benefit ration is definitely there.

				Jordan



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?6647.870152743>