verdict: hacked

lachoy on 2005-10-10T21:12:57

Website still offline, and today I figured out why: the machine was hacked. I don't know how yet and it's kind of puzzling because it was pretty much up-to-date and had very few public services running (ssh, http, smtp, imap, rsync). Anyway, I'm trying to figure out what to do with it and if that involves snail-mailing the machine back here to Pittsburgh. (It's currently just outside of DC, and if I could get a free or very cheap host locally I'd take it in a heartbeat.)

One permanent result will be that I will no longer host my own email, something I probably should have relenquished a long time ago. Oh well.


Probably ssh

Matts on 2005-10-11T00:44:57

There's an awful lot of automated ssh cracking going on. You pretty much need to have ssh setup to require certs these days.