Re: OpenSSH - remote exploit - any reported cases?

On Thu, Jul 11, 2002 at 06:00:44AM -0600, Kurt Seifried wrote:
> Just that. Are there any reported cases of remote compromise of a system
> to the challenge response bug (any system, openbsd or otherwise)? Or even
> good suspicious cases?
> In other words did anyone actually actively exploit the first remote hole
> the default install in 6 years?
> Kurt Seifried
> A15B BEE5 B391 B9AD B0EF
> AEB0 AD63 0B4E AD56 E574
http://seifried.org/security/

Some may argue the relevance of this, but this guy setup a Honeypot
using OpenBSD 3.0 and was soon compromised.  Twice even.


Taveren (Ren West)
Taveren (Ren West)

