★ wanayoo — archive 1999 http://www.linuxsecurity.com/articles/hackscracks_article-5902.htmlNouvelle recherche | Portail wanayoo
Advertise Here

   
Documentation
Security Sources
Forums
Firewalls
Host Security
Cryptography
Network Security
Intrusion Detection
Organizations/Events
Server Security
Vendors/Products
Projects
General
Privacy
Government
Hacks/Cracks
 
News: Hacks/Cracks 10/11/2002 16:38

Sendmail Trojan Looks Familiar

Published By: SecurityFocus
Posted By: Eric Lubow
10/11/2002

The Trojan horse discovered in a distribution of the Sendmail open-source e-mail server has striking similarities to a backdoor planted in OpenSSH last summer, according to security experts who've analyzed the code. But missteps in the alerting process may have given the culprits a chance to cover their tracks.

The sophisticated backdoor came to light Tuesday through an advisory from the government-funded Computer Emergency Response Team (CERT) Coordination Center. CERT warned that copies of version 8.12.6 of Sendmail downloaded between September 28th and October 6th from the Sendmail Consortium's public FTP server contained the backdoor.

Once downloaded, the victim unwittingly activates the backdoor by compiling Sendmail from source code. The malicious code then establishes a secret control channel to a particular Internet host over TCP port 6667, according to the CERT advisory.


Click here to go to this article.

Linux Security Week - January 6th 2003
Jan 6

Linux Security Newsletters - Subscribe Today!
Jan 4

Are Hacking Defenses Winning the War?
Jan 4

India, Pakistan Conflict Enters Computers
Jan 3

National Security Web Site: Somebody's Listening
Jan 3

Why RIAA Keeps Getting Hacked
Jan 3

Macro and script viruses dying off
Jan 3

Contact Us | Legal Notice | About Our Site
© Guardian Digital, Inc., 2000