Re: SGI/O2 trouble----May affect you too!

Karen Ann Smith (karenann@unm.edu)
Mon, 06 Dec 1999 15:30:01 -0700

> We have two SGI/O2 operating pm Irix 6.3. On Nov 30 at exactly the same
> time (18:02) they both have the "su" password protection turned off. So
> anyone can get to super user mode without a root password. we found out
> that a file called .rhost containing two + signs was added under /.

This is not a "bug" This is a hacker breaking in an making life
easier for him/herself. I suggest either a very careful analysis of
the entire system or (better) a complete re-install of the operating
system.

kas

-- 
Karen Ann Smith               karenann@unm.edu
Director, NMR Facility        Adj. Asst. Prof.
Dept. of Chemistry            Clark Hall
University of New Mexico      Albuquerque, NM 87131
505.277.4031                  url: http://www.unm.edu/~karenann
Join SETI for an out-of-this-world screen. 
http://setiathome.ssl.berkeley.edu/
May you celebrate the Winter Solstice season with joy and happiness
according to your own customs.