[Dshield] warning - netcraft.com

Jens Knoell jens at ing.twinwave.net
Sat Nov 24 23:45:35 GMT 2001


I don't see anything wrong with that... they're not actively attacking
anything, and since they do it for their stats anyway... if you're concerned
about it, change your server signature.

Jens

----- Original Message -----
From: Josh Beckett
To: dshield at dshield.org
Cc: abuse at planet.net.uk
Sent: Saturday, November 24, 2001 00:32
Subject: [Dshield] warning - netcraft.com


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

netcraft.com is offering, what I find to be an offensive tool, in
it's current incarnation.

They offer a tool that allows you to scan any site you input into a
web page for tcp/443 service and probe it's offerings.  I've seen
plenty of tools that allow similar activity, but they usually allow
you to only scan your own ip (a much safer implementation).

The security implications are obvious to me, but they don't find
anything wrong with their activity.  So I put it before you, my
security comrades...be aware.

For the planet.net.uk folks --
ENERGIS SQUARED ABUSE TICKET : 148978 (ACTIVE SYSTEM ATTACK!)

-----BEGIN PGP SIGNATURE-----
Version: PGPfreeware 7.0.3 for non-commercial use

iQA/AwUBO/9M+GuCvDMAxAeZEQJkpACg3U1Ts0b8Ly8y9xx+bVYU99cf9/oAn2kJ
0NaboZs2SfEzeOSIZRiIBKSE
=Yk85
-----END PGP SIGNATURE-----




More information about the list mailing list