Re: smoothall vpn im
Samuel Gordon-Stewart <[email protected]> Tue, 23 Nov 2004 16:01:01 +1100
| Newsgroups | gmane.comp.security.firewalls.smoothwall.general |
|---|---|
| Message-ID | <[email protected]> |
On Tue, 23 Nov 2004 14:45:03 +1100, Samuel Gordon-Stewart <[email protected]> wrote: > Yes, the smoothwall website has been hacked Hmmmm, I am quoting myself...proof that I am insane!!! This just goes to show why you should setup publicly accessible servers in the orange zone, atm we have no way of knowing what kind of access the attacker has to the SW webserver and as such, what kind of access they may have to other computers on the same network (if any) Imagine if this was your webserver and you had it on green, how long would it be until the attacker finds the other computers on your network... The other cause for concern is that the attacker might have access to the personal information stored by the forums, such as full names, email addresses (even the ones hidden from the public), IP addresses you have had when visiting the forums etc. My other concern is how much of this can be blamed on memset (the people who host the server), I suppose we won't know that until we know what happened to the server in the first place. Now that I have finished my little rant (thankyou for reading it), I will quote myself again: "I am not a member of the smoothwall team, nor do I work for SmoothWall Ltd. My words should not be read as official responses as they are not, they are my words, and I take full responsibility for them." samuel -- I Must be really old in dog years!! Afternoons With Samuel http://tinyurl.com/5fl3e Listen to my lovely music www.thefunkyasylum.com/notnice.mp3 Protect your network www.smoothwall.org _______________________________________________ gpl mailing list [email protected] http://lists.smoothwall.org/mailman/listinfo/gpl SmoothWall Stash - Buy Our Stuff! http://cafepress.com/smoothwall