[CVALE] ***SPAM*** (4.1) Re: Router Recommendation

Bent Wizard bent_wizard at yahoo.com
Sat Aug 8 11:30:46 PDT 2009


http://www.google.com/tisp/
 
hi Patrirc have you seen this ?
 
Russ

--- On Fri, 7/24/09, Patrick Bennett <stnick at bennettbungalow.com> wrote:


From: Patrick Bennett <stnick at bennettbungalow.com>
Subject: Re: [CVALE] ***SPAM*** (4.1) Re: Router Recommendation
To: cvale at cvale.org
Date: Friday, July 24, 2009, 3:12 PM


On my read the exploit bypasses authentication altogether, making the 
weakness or strength of the password is a mute point).  No?

    -Patrick


Ian Sterling wrote:
> You can also avoid this problem by changing the default admin password  
> to something stronger. :-)
>
> --Ian...
>
> On Jul 24, 2009, at 14:56, Patrick Bennett  
> <stnick at bennettbungalow.com> wrote:
>
>   
>> FYI.  Remote exploit found in DD-WRT (not sure if only v24 sp1) -
>> http://www.milw0rm.com/exploits/9209 .  The simple step of making the
>> info page and admin interface inaccessible on the WAN ought to fix  
>> (the
>> example exploit seems to not work on my own router under these
>> conditions anyway).
>>
>>    -Patrick
>>
>>
>> Patrick Bennett wrote:
>>     
>>> Fantastic Rick.  Enjoy!
>>>
>>>    -Patrick
>>>
>>> Rick Knight wrote:
>>>       
>>>> Spam detection software, running on the system  
>>>> "mail.rlknight.com", has
>>>> identified this incoming email as possible spam.  The original  
>>>> message
>>>> has been attached to this so you can view it (if it isn't spam) or  
>>>> label
>>>> similar future email.  If you have any questions, see
>>>> defang at rlknight.com for details.
>>>>
>>>> Content preview:  Thanks everyone for the recommendation. My  
>>>> Buffalo WHR-HP-54G
>>>>   with DD-WRT pre-flashed arrived yesterday and I set it up last  
>>>> night. It
>>>>  works beautifully. Mail is arriving at my server with the headers  
>>>> intact so
>>>>   grey-listing is working and my spam is WAY down. Most important,  
>>>> I realized
>>>>   my mail server had become an open relay. The new router took  
>>>> care of that
>>>>   as well. [...]
>>>>
>>>> Content analysis details:   (4.1 points, 3.6 required)
>>>>
>>>> pts rule name              description
>>>> ---- ----------------------  
>>>> --------------------------------------------------
>>>> -1.4 ALL_TRUSTED            Passed through trusted hosts only via  
>>>> SMTP
>>>> 5.5 AWL                    AWL: From: address is in the auto white- 
>>>> list
>>>>
>>>>
>>>>
>>>> --- 
>>>> --- 
>>>> ------------------------------------------------------------------
>>>>
>>>> _______________________________________________
>>>> cvale mailing list
>>>> cvale at lists.fire2wire.com
>>>> http://lists.fire2wire.com/mailman/listinfo.cgi/cvale
>>>>
>>>>         
>>> --- 
>>> ---------------------------------------------------------------------
>>>
>>> _______________________________________________
>>> cvale mailing list
>>> cvale at lists.fire2wire.com
>>> http://lists.fire2wire.com/mailman/listinfo.cgi/cvale
>>>
>>>       
>> _______________________________________________
>> cvale mailing list
>> cvale at lists.fire2wire.com
>> http://lists.fire2wire.com/mailman/listinfo.cgi/cvale
>>     
>
> _______________________________________________
> cvale mailing list
> cvale at lists.fire2wire.com
> http://lists.fire2wire.com/mailman/listinfo.cgi/cvale
>   


_______________________________________________
cvale mailing list
cvale at lists.fire2wire.com
http://lists.fire2wire.com/mailman/listinfo.cgi/cvale



      
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.fire2wire.com/pipermail/cvale/attachments/20090808/0283cf44/attachment.html


More information about the cvale mailing list