SSH (Secure SHell) is a common tool for setting up a “VPN tunnel” using port forwarding, or secure remote access to the command line; thus it is not uncommon for servers providing SSH connections to be directly accessible from the Internet.
Hackers are constantly testing defenses looking for configurations that missed something important and therefore allow access. SSH daemon configurations that improperly turned off keyboard-interactive logons but forgot to enable the “ChallengeResponseAuthentication no” are being attacked.
From SANS:
How can you tell when an e-mail address isn’t correctly constructed or formatted? What about a website address or URL? Part of recognizing bad addresses and knowing how to address an e-mail correctly is understanding and knowing what the top level domains are, and how domain names are structured.
FULL ARTICLE: TOP LEVEL DOMAINS: What are they?
Continue readingReceived an e-mail today from hackers trying to trick me into opening a file attached to the e-mail. The file was, of course, malware. Below is a copy of the fake Facebook e-mail. These e-mails have been circulating since January 2010.
Full Story: Fake Facebook Password Notice
Continue reading