lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
From: billybobknob at hotmail.com (BillyBob)
Subject: SNMP Broadcasts

For the past 12 hours my external IP has been bombarded with SNMP
Broadcasts, I have sent complaints to my ISP and the ISP of the originating
IP.
The attacking IP must have some sort of worm or automated script to go
through all the port numbers as his remote port starts at 60001 and goes up
to 64087 but it hits my local ports 1-highest port # (65535) if I let my
logs record that much.

Could this be some kind of SNMP DoS as I get several/second ?


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ