nanog mailing list archives
Re: Cisco/Level3 takedown
From: Christopher Morrow <morrowc.lists () gmail com>
Date: Thu, 9 Apr 2015 11:47:36 -0400
On Thu, Apr 9, 2015 at 11:31 AM, Sameer Khosla <skhosla () neutraldata com> wrote:
Was just reading http://blogs.cisco.com/security/talos/sshpsychos then checking my routing tables. Looks like the two /23's they mention are now being advertised as /24's, and I'm also not sure why cisco published the ssh attack dictionary. It seems to me that this is something that if they want to do, they should be working with entire service provider community, not just one provider.
are you sure they aren't engaged with a wider SP community? (the dictionary seems relevant for: "Oh crap, my root account DOES have password123 as the password :(")
Current thread:
- Cisco/Level3 takedown Sameer Khosla (Apr 09)
- Re: Cisco/Level3 takedown Christopher Morrow (Apr 09)
- RE: Cisco/Level3 takedown Naslund, Steve (Apr 09)
- RE: Cisco/Level3 takedown Josh Luthman (Apr 09)
- RE: Cisco/Level3 takedown Naslund, Steve (Apr 09)
- RE: Cisco/Level3 takedown Naslund, Steve (Apr 09)
- Re: Cisco/Level3 takedown Christopher Morrow (Apr 09)
- Re: Cisco/Level3 takedown Blake Hudson (Apr 09)
- Re: Cisco/Level3 takedown Steve Noble (Apr 09)
- macomnet weird dns record Colin Johnston (Apr 14)
- Re: macomnet weird dns record Nikolay Shopik (Apr 14)
- Re: macomnet weird dns record Stephane Bortzmeyer (Apr 14)
- Re: macomnet weird dns record Colin Johnston (Apr 14)
- Re: macomnet weird dns record Stephane Bortzmeyer (Apr 14)
- Re: Cisco/Level3 takedown Steve Noble (Apr 09)