[Intrusions] FYI - SSH bruteforcing

Andrew Daviel andrew at andrew.triumf.ca
Fri Dec 3 08:48:26 GMT 2004


FYI

Recently we had a brute-force attempt to guess SSH passwords from a
machine in taiwan 203.95.227.177 (www.shark-tw.net)

The process identifies itself as SSH-2.0-libssh-0.1 and tries to guess
passwords for the users root,admin, test and guest.

We had an earlier run-in with this kind of thing - the password guessed
for guest is guest I think .. hey, that rhymes .. :-)



-- 
Andrew Daviel, TRIUMF, Canada
Tel. +1 (604) 222-7376
security at triumf.ca



More information about the Intrusions mailing list