09-10-04 10:53 PM
On Wed, 8 Sep 2004 21:21:04 -0700, "Barry"
<Barry@discussions.microsoft.com> wrote:
>I am running win 2003 server. I recently was tagged and I believe that I ha
ve
>cleaned up the server and all the illegal software that was on it. Is there
a
>sure fire way of protecting the server from not being tagged again.
Obvious is elimination of anonymous acces to FTP if you allowed it.
But if you were exploited through some other unknown means, you should
flattent the box and rebuild from scratch, paying attention to
security. When you don't know the attack vector, you can't verify
that there are no back doors on your system that make it easy to
bypass any security changes you make.
Jeff
[ Post a follow-up to this message ]
|