lack of intelligence…
by Travis on Jan.28, 2008, under Tech Stuff
You know… I’ve come to a conclusion that “script kiddies” are getting dumber and dumber by the minute. For those of you that don’t know I routinely (daily) check over the security output for the server that hosts all of my websites, email, etc and add entire C blocks (that’s a /24 network or 254 addresses to those of you who don’t know) from other countries to a complete IP traffic ban when they attempt to access the network. Who in Korea or China needs to use anything on my server anyway? I don’t host any Chinese or Korean sites, right? 🙂 The hosts from the US are easy to deal with, which by the way makes up less than 0.5% of the attempts. I simply turn over to their ISP’s or the authorities if they rough up my server too bad. Honestly the ones under 25 requests I pretty much ignore from the US… I figure it’s some lil kid trying to learn the ropes and maybe will move on to learning something better once they can’t get in so why bother em? 🙂
Well anyway… back to my original thought here… Some of these logins are ridiculous… To name a few:
letmein, myspace1, monkey, link182, password1, iloveyou, cookie123, miss4you, clumsy, f*#{you1, baby etc…
I was humored by the porn guy a couple weeks ago, those were almost comical. These are actually in order:
love, hate, f*#{, image, photo, video, webcam, magic, dorms, slut, b!+ch, cock, sh!+, porno, lesbos, swinger, playboy, etc…
Even better are the ones that try command names or OS names:
more, less, grep, ifconfig, ls, ps, mv, suse, mandrake, debug, kernel, windows, netstat, etc…
I swear IQ’s have dropped sharply. If anyone even allowed some of those logins they’re pretty retarded honestly. It defies all common sense I tell you. Honestly, I’ve been hacked before and it didn’t bother me this much. Someone with some real talent can acquire access to your system and 90% of the time you have no clue they were even there. They pop in, do their thing and pop out but this spamming of logins and passwords is really quite pathetic and annoying. My personal favorite are the ‘root’ and ‘admin’ attempts as they make me laugh since there is no way you’re getting in with a root login on the server unless you’re sitting on the console physically…
Sadly what is even more pathetic is that some of those attempts actually work on some systems because the people in charge of those systems are either a) incompetent themselves or b) unaware that someone incompetent installed a vulnerable OS on their network. I do however think people need to be a little more proactive.
Anyway… I’ll end my rant here. 🙂
