10/09/2008

Neosploit mass FTP exploitation control your domain

I think this is a first. A commercial firm that makes a firm by which you can control if your domain is in their database of being compromised. It should be up to the CERT to have such a form - and only them. But scareware marketing is making huge inroads this year (with huge vulnerability announcements before conferences for example).

This is the form you have to fill in (there are about 100.000 websites compromised with over 200.000 FTP credentials of users and administrators). Maybe it is time to blank out all users and aks all of them to re-register. I now this ain't a very good marketing tric as you can lose so a huge percentage of your users, but this way you can cut the crap and keep the active and secure them better.

http://www.aladdin.com/forms/airc-news-entries/form.aspx?...

If anybody has a list we would be interested :)

For France we know that the following were hit of a thousand 1.000 servers like personal sites at lycos.fr and free.fr (block IT)  as sites like tf1.fr, 3suisses.fr, bouyguestelecom.fr, cict.fr, ... source

 

12:32 | Permalink | Comments (0) | Email this | |  del.icio.us | | Digg! Digg |  Facebook

Post a comment