Re: SSH bruteforce on its way...

Justin <[email protected]>
Newsgroups gmane.comp.security.incidents
Message-ID <[email protected]>
Jouser,

Nah, there were some exploits a while back that took advanteage in
some timing flaws in the SSHd that let attackers determin valid
usernames.

peace,
--Justin

On 21 Oct 2005 18:05:27 -0000, [email protected] <[email protected]> wrote:
> I didn't think it was possible to determine valid usernames by themselves?  You either have a valid username AND password or not.
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.