lingo.lol is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for linguists, philologists, and other lovers of languages.

Server stats:

61
active users

#passwordgroping

0 posts0 participants0 posts today

"I have yet to meet an admin who plausibly claims to never have been tripped up by their overload rules at some point."

More, and a walk down memory lane, in "The Hail Mary Cloud And The Lessons Learned" nxdomain.no/~peter/hailmary_le
#ssh #passwords #bruteforce #passwordgroping #cybercrime #openbsd #pf #packetfilter #security #guessablepasswords #hailmary #hailmarycloud

nxdomain.noThe Hail Mary Cloud And The Lessons Learned

So this happened:

Jan 30 03:07:16 skapet sshd-session[94311]: Failed password for invalid user "> from 165.231.182.56 port 15613 ssh2

I wonder if we are seeing a variant of "gropefor database down, feeding raw html to the ssh gropebot" scenario again such as in nxdomain.no/~peter/so_somebody #sshgropers #sshd #passwordguessing #passwordgroping #passwords #cybercrime

nxdomain.noSo somebody is throwing HTML at your sshd. What to do?
Continued thread

More data points - today's is

Oct 6 02:03:53 skapet sshd-session[76897]: Failed password for invalid user Can't open ikk from 2a02:4780:10:42bf::1 port 43964 ssh2

More likely than not a variant of spamto database gone awol like back in the day nxdomain.no/~peter/so_somebody (prettified, tracked bsdly.blogspot.com/2016/12/so-) but still hilarious

nxdomain.noSo somebody is throwing HTML at your sshd. What to do?