|
BMJ, I don't think anybody bothers sniffing passwords these days. * The script kiddies just get root through whatever exploit their scripts find. * Do you monitor CERT and the security mailing lists? * If you have a server on the public net, you just need to watch for the exploit of the day and dilligently patch them up.
Are you able to detect a port scan? * *That's the first sign that you're about to be root-kit'd.
|