Vsetko co ma verejnu ip je vystavene dennodenne utokom.
Samozrejme sa to nikam nehlasi, navyse utocia aj tak len hacknute servre, ci nejaka zombie siet, takze skutocneho pachatela sa nedopatras.
Chranit sa mas sam.
Ja sa radsej do logov ani nepozeram;o).
Inak z mojich skusenosti uz do 1min po pripojeni na net sa stanes cielom prveho pokusu o prihlasenie zvonku.
Len pre ukazku, tu je kratky log z utokov na OpenVPn server poradne.
jun/12 08:33:53 ovpn,debug,error,53248,27460,27460,debug,l2tp,18640,warning,55552,
63184,18688,0,firewall,137,64960,9248,debug unknown msg!
jun/12 08:33:53 ovpn,info TCP connection established from 162.142.125.212
jun/12 08:33:53 ovpn,info TCP connection established from 162.142.125.212
jun/12 12:58:33 ovpn,info TCP connection established from 170.106.115.39
jun/12 16:57:07 ovpn,info TCP connection established from 192.241.199.246
jun/12 21:33:13 ovpn,info TCP connection established from 223.71.167.165
jun/13 00:43:07 ovpn,info TCP connection established from 167.94.145.60
jun/13 00:43:07 ovpn,debug,error,53248,27460,27460,debug,l2tp,18640,warning,55552,
63184,18688,0,firewall,137,64960,9248,debug unknown msg!
jun/13 00:43:07 ovpn,info TCP connection established from 167.94.145.60
jun/13 00:43:07 ovpn,info TCP connection established from 167.94.145.60
jun/13 15:05:16 ovpn,info TCP connection established from 23.225.163.215
jun/13 15:05:16 ovpn,info TCP connection established from 23.225.163.215
jun/14 01:49:03 ovpn,info TCP connection established from 167.248.133.45
jun/14 01:49:03 ovpn,debug,error,53248,27460,27460,debug,l2tp,18640,warning,55552,
63184,18688,0,firewall,137,64960,9248,debug unknown msg!
jun/14 01:49:03 ovpn,info TCP connection established from 167.248.133.45
jun/14 01:49:04 ovpn,info TCP connection established from 167.248.133.45
jun/14 01:50:06 ovpn,info TCP connection established from 167.94.138.60
jun/14 01:50:06 ovpn,debug,error,53248,27460,27460,debug,l2tp,18640,warning,55552,
63184,18688,0,firewall,137,64960,9248,debug unknown msg!
jun/14 01:50:06 ovpn,info TCP connection established from 167.94.138.60
jun/14 01:50:06 ovpn,info TCP connection established from 167.94.138.60
jun/14 07:10:22 ovpn,info TCP connection established from 128.199.64.47
jun/14 19:37:46 ovpn,info TCP connection established from 192.241.208.153
jun/14 20:59:04 ovpn,info TCP connection established from 64.227.99.233
jun/14 22:46:16 ovpn,info TCP connection established from 183.136.225.9
jun/15 08:33:32 ovpn,info TCP connection established from 167.94.146.59
jun/15 08:33:32 ovpn,debug,error,53248,27460,27460,debug,l2tp,18640,warning,55552
pripadne bruteforce na web.
jun/04 04:07:32 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 04:31:20 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 04:31:29 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 04:31:29 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 04:55:41 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 04:55:50 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 04:55:50 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:19:30 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:19:39 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:19:39 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:44:00 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:44:09 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:44:09 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 05:59:07 ovpn,info TCP connection established from 192.241.213.101
jun/04 06:08:00 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 06:08:09 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 06:08:09 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 06:32:14 system,error,critical login failure for user admin from 194.127.16
7.100 via web
jun/04 06:32:23 system,error,critical login failure for user admin from 194.127.16