Full Disclosure mailing list archives

Re: SSH Exploit Request


From: Vladimir Parkhaev <vladimir () arobas net>
Date: Sun, 16 Nov 2003 08:30:03 -0500

Quoting Valdis.Kletnieks () vt edu (Valdis.Kletnieks () vt edu):
So tell me - do you trust the installs enough to just do it and logout
without bothering trying to ssh in to make sure it works first? ;)


Of course not, but I personally prefer to take a chance (and responsibility)
for impacting a prod server with gone-wild-ssh-update over being 0wned.
Other people's mileage may vary....



-- 
.signature: No such file or directory

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: