[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: IDS: strings in backdoor binaries



    [ The following text is in the "iso-8859-1" character set. ]
    [ Your display is set for the "US-ASCII" character set.  ]
    [ Some characters may be displayed incorrectly. ]

Archive: http://msgs.securepoint.com/ids
FAQ: http://www.ticm.com/kb/faq/idsfaq.html
IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
HELP: Having problems... email questions to ids-owner@uow.edu.au
NOTE: Remove this section from reply msgs otherwise the msg will bounce.
SPAM: DO NOT send unsolicted mail to this list.
UNSUBSCRIBE: email "unsubscribe ids" to majordomo@uow.edu.au
-----------------------------------------------------------------------------
 There appears to be a misunderstanding.  I'm not talking about a system
that I have.  I cannot pre-trojan get ANYTHING about it.  I didn't ask that.
I knew about Tripwire years ago, and wrote my own to check multiple systems
across a network.  If I wondered about that I would have asked.  I didn't.
Anyone care to answer what I DID ask?


-----Original Message-----
From: DPG
To: Gary Flynn
Cc: ids@uow.edu.au
Sent: 4/28/00 7:27 PM
Subject: Re: IDS: strings in backdoor binaries

Archive: http://msgs.securepoint.com/ids
FAQ: http://www.ticm.com/kb/faq/idsfaq.html
IDS: http://www-rnks.informatik.tu-cottbus.de/~sobirey/ids.html
HELP: Having problems... email questions to ids-owner@uow.edu.au
NOTE: Remove this section from reply msgs otherwise the msg will bounce.
SPAM: DO NOT send unsolicted mail to this list.
UNSUBSCRIBE: email "unsubscribe ids" to majordomo@uow.edu.au
------------------------------------------------------------------------
-----
The real answer would be to install tripwire after you install
your operating systems. and thoughts on commercial software that matches
checksums of binary files for specific version information or installed
default to that particular OS. This would make a great idea for a gnu
project. anyone know if anything of this type has been introduced into
the
community?

-DPG
  


.                                                 .
                        . 

             
                                       
        
                             

   
                                .