SI
SI
discoversearch

We've detected that you're using an ad content blocking browser plug-in or feature. Ads provide a critical source of revenue to the continued operation of Silicon Investor.  We ask that you disable ad blocking while on Silicon Investor in the best interests of our community.  If you are not using an ad blocker but are still receiving this message, make sure your browser's tracking protection is set to the 'standard' level.
Technology Stocks : Novell (NOVL) dirt cheap, good buy?

 Public ReplyPrvt ReplyMark as Last ReadFilePrevious 10Next 10PreviousNext  
To: PJ Strifas who wrote (30667)3/9/2000 12:53:00 AM
From: Scott C. Lemon  Read Replies (2) of 42771
 
Hello PJ,

How's it going? I hope that you're doing well ...

I agree on the security front, however it's funny how these articles get "positioned" by various press. I have a friend who has been a database developer for a long time, and he indicated that when these articles started to show up, he began to receive urgent notices from both Microsoft and Oracle - both telling him to remember to change the default passwords!!!!!

If you read the article closely:

=======================================

"I would like to thank the nice people at ALL the Sites I Cracked for having left their entire sales database, readable & writeable for any one who bothered to check their site out," Curador wrote on a Web site saved by Davis, who is continuing to investigate the case. "Maybe one day people will set up their sites properly before they start trading because otherwise this won't be the last page I post to the NET," the message read.

"Also Greetz to my friend Bill Gates, I think that any guy who sells Products Like SQL Server, with default world readable permissions can't be all BAD," the message read.

=======================================

So what we are really looking at is two fold ... one, that the installation of the softare *used* to have default passwords ... and two, that a amateur admin is running the site and didn't *change* the default passwords ...

No solution for security if the admin leaves the door wide open ... ;-(

Scott C. Lemon
Report TOU ViolationShare This Post
 Public ReplyPrvt ReplyMark as Last ReadFilePrevious 10Next 10PreviousNext