passwords sniffed

David Becker (becker@major.cs.washington.edu)
Wed, 8 Jul 1998 22:08:02 -0700

Time to retrain those fingers. root and rconsole will get new words
overnight for the spin and loom hosts.

Also, if you choose to change your own password, be aware there are two
yp domains, one for the old turbochannel alphas, and one for everything else.
Run yppasswd twice to change things.

For your afs password, linux afs does not include kpasswd so you'll have
to run kpasswd on a system that has it. Any sun, alpha, or aix box
should do.

Someday we'll kerberize all this and have a single password...

-----Forwarded message

We recently found a student managed linux system had been
compromised and the intruder ran a password sniffer. An
18MB log file was left behind which is no doubt in the
hands of many. Individuals with sniffed passwords will
soon be getting individual messages, but wanted you to know
that the log file logged some su's (with password) to

loom02 and loom04

and that the rconsole password was sniffed for

loom12, loom13

-----End of forwarded message-----