|Posted by:||Jerry Stuckle (jstuckl…@attglobal.net)|
|Date:||Tue, 02 Oct 2012|
Yesterday about noon UTC the logs on one of my servers show a concerted
attack to ssh into the system. The attacks came from multiple IP
addresses from China (a Class A range but everything was in the
255.255.255.0 subnet). This lasted for about 20 minutes before the
server shut them down.
Daily I see people trying to break into the system either via SSH or
POP3/IMAP accounts, but this is the first such dedicated attempt I've
seen. Has anyone else seen such activity?
Remove the "x" from my email address
JDS Computer Training Corp.