Here's what I have left to do:
I think this is a feasable goal to reach by the end of the year. So here's the story for today.
I have a list of about 16 hosts that have attacked my machine. Basically, they just tried a bunch of brute force logins on SSH. Nice try,
fuckwits. So my original assumption was that these motherfuckers must die. But after reading ANSD, I realized that they are probably just
pawns used by another source. So I did some scans. Both nmap and Nessus, and Nessus reported that the ones that were up were indeed
vulnerable to the infamous "FTP Bounce" attack. This basically allows you to proxy your scans through one machine to another.
So right now I have two main targets. One in China, and one in Egypt. They are both interesting boxes, both seemingly Linux with a ton of
open ports just begging to be pwned. So I scanned the China box, being my preferred favorite. Those Chinese motherfuckers hack us all the
goddamned time. Why not hack them back? BlackHat FTW!
So Nessus reported that the China box was open to the FTP Bounce. Unfortunately, other than some kind of lame db2 local exploits, there's not
much else. So I am now bouncing scans off of China to scan Egypt. Will report in with more info. Here's the command:
$ sudo nmap -v -O -sS -P0 -b anonymous:anon@<FTP SERVER IP> <HOST TO SCAN>
All trademarks and copyrights on this page are owned by their respective owners. Comments are owned by the Poster. The Rest © 1997-2008 SourceForge, Inc.