Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

this is how matasano got owned. an easily guessable account got broken into and root priv escalation was used. if they were using port knocking an attacker would have had to be in the middle, which is possible but adds an extra 'auth' layer so increases overall intrusion hardness.

also, everyone keeps talking up these scripts to stop brute forcing... two iptables rules will do this for you.



Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: