Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: login attempt admin/password |
|---|---|
| Date: | Mon, 10 Dec 2007 13:27:51 -0500 |
Do you have any NetGear Routers deployed at your site? If so, does username=admin & password=password? If either one of those answers is no, then you are not vulnerable to that attack. If you do have a netgear router, but you have changed the default username or password, you are not vulnerable to that attack. This alert is just telling you that someone tried to log with admin/password. It does not tell you if the person stopped at that attempt, or then attempted another 1000 username/password combinations. If you do have a NetGear router, I would recommend restricting access to it to only the IP's that need to get to it using a host or network based firewall, or both. Regards, Seth On 8 Dec 2007 08:51:37 -0000, <tyrian2uk@yahoo.co.uk> wrote:
WEB-INSC NetGear router Default password login attempt admin/password i see this signature detect by IDS how do i check if it is a threat or not ? external ip:1710 -> internal IP:80 ------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw to learn more. ------------------------------------------------------------------------
------------------------------------------------------------------------ Test Your IDS Is your IDS deployed correctly? Find out quickly and easily by testing it with real-world attacks from CORE IMPACT. Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw to learn more. ------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: SSL - Man-in-the-Middle filtering, carlh2007 |
|---|---|
| Next by Date: | RE: Recommended IPS signature set, Yahsodhan Deshpande |
| Previous by Thread: | RE: login attempt admin/password, Bill Lavalette |
| Next by Thread: | Re: login attempt admin/password, Ron Gula |
| Indexes: | [Date] [Thread] [Top] [All Lists] |