|
|
Choosing A Webhost: |
Re: 6667 so stupid: msg#00006security.botnet.general
To report a botnet PRIVATELY please email: c2report@xxxxxxxxx ---------- sandalwood wrote: > To report a botnet PRIVATELY please email: c2report@xxxxxxxxx > ---------- > Hello botnets, > > first post? nice. > > well my question is, what do these kids all have down syndrome?? > why are they so stupid as to use the ancient "recommended" port 6667 > for c&c, when they should know that probably HALF of all major isps > automatically block outbound traffic to that port? > > obvious alternate ports would be common services 80, 21, 53.. First off, who says they don't use alternate ports OR services as C&C channels? Second, getting any ISP to block any port is very problematic, and for many good reasons. It is obvious that by only hunting botnets the only thing we accomplish is to educate the Bad Guys and push them into continuing evolution, however, informing the responsible party and taking the C&C's off-line makes their lives more difficult at this point. As that is already done and this information is valuable to the public, not to mention can take the whack-a-mole part of the war to the next level, we decided to open this mailing list as a proof of concept and measure how it may help the fight. Gadi. -- http://blogs.securiteam.com/ "Out of the box is where I live". -- Cara "Starbuck" Thrace, Battlestar Galactica.
|
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: Online diagnostics, Jess Kitchen |
|---|---|
| Next by Date: | Re: Online diagnostics, Dan |
| Previous by Thread: | 6667 so stupid, sandalwood |
| Next by Thread: | Re: 6667 so stupid, Christopher J. Pilkington |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
Free MagazinesCisco NewsReceive a free quarterly e-newsletter with exclusive articles on how Cisco IT uses its own products and solutions to enable the business. subscribe Systems Management News, the newspaper for IT systems administration and data center managers! Each issue of Systems Management News is chock-full of news and analysis to help you understand what's happening in your field. subscribe The Enterprise Newsweekly eWeek is the essential technology information source for builders of e-business. subscribe Oracle Magazine Oracle Magazine contains technology strategy articles, sample code, tips, Oracle and partner news, how to articles for developers and DBAs, and more. Oracle (NASDAQ: ORCL) is the world's largest enterprise software company. subscribe Total Telecom Total Telecom is "The Economist of the communications industry". subscribe |