Trappa detects a CGI scan and sends an alert message to syslog with the attackers IP+Web Browser. Works by installing decoy CGI scripts in the cgi-bin directory.
c5c64cf21cb54d301d687c4e4ae90ee357c72612a0dca2803565578308d4a6ee
The Secure-Linux patch adds a few security features to the kernel which, while not a complete method of protection, will stop most of the 'cookbook' buffer overflow exploits cold. It also adds the option of restricting the use of symlinks and named pipes in +t (temp) directories which fixes most tmp-race exploits as well. It can also add a little bit more privacy to the system by restricting access to parts of /proc to root so that users may not see who else is logged on or what they're doing. Also tightens down file descriptors 0, 1, and 2, implements process limits and shared memory destruction, and priveledged IP aliases for kernel 2.0.
ce068d4c67c3918515574d47c6f6251b29eee6c423c8ae649d377a6b60d2b8fb
Carrier scan of (8oo) 787
80ae02e69b59779e47e2661d013281bfbbb35f344ac7c03d35bc17848fbd5109
Carrier scan of (6oo) 767
87d44d10e251af80b4d2515f633d2a0eb72f1129e2c1094f76279e18ba191c49
Carrier scan of (8oo) 734
77027adc1ecd2aceed38df4c70c39652c626f543b1244605c74501916dfaa956
Carrier scan of (8oo) 722
98e28717f5f7a29c06b97e5df887936181e754ad606feb144ed410acbbda8bb2
Carrier scan of (8oo) 666
cf3abc0381b9602927d46d44e6bb3ccff8786d5a6de2d56d95925cfa91af84a1
Carrier scan of (8oo) 558
98394ab159875ccd45726f6277b37a6fcecda806f13902181df6633c63b757cb
Carrier scan of (8oo) 555
5e8d748b0764b75f77f75e6d4a287a1cf7c2bb13922eab7ff4feac33420aa6e0
Carrier scan of (8oo) 546
6382bf5bc083d95de8e18d23ff55fce46e4da9f4c31b5073fd6430e13814e7f6
Carrier scan of (8oo) 468
9cd4ae1d362cb925f57ccd14ac13c0e9ff08b579c6b72802cce18bc19da9c0af
Carrier scan of (8oo) 465
69fc72ac4798a10fdd38083e693eebfd79ea08bc983e5e4416892fac31669e66
Carrier scan of (8oo) 444
3391f9bf50bd6c3c03ac25abf93c3bc9913f080efdd62f54c807ae28288d0701
Carrier scan of (8oo) 453
c83ee75a94cad4c524cc8ce742e53d162ac2b46fbbaee3805651d4540eb4f67f
Carrier scan of (8oo) 368
dcbd09df2ca90afb9ca4d2a363d51a2eb3352a19f15b54a1165e56744b37a76b
Carrier scan of (8oo) 367
c1c2c14c9ff1dd98fd1bcd4eb9d71ad09204fcdaa26b6f33d10a9d77e38d8202
Carrier scan of (8oo) 356
fb5957b5d3acaefc605c19df23da8a4d476e8382be9c52bab2a3af63a62b5508
Carrier scan of (8oo) 323
3d1492e8467a69af2526e1f5263a47df4dec0a8c1bc6419f7c58e389358e4def
Carrier scan of (8oo) 348
9bdc1e40e1276dd31666b825b6afa5c2903d5cc005cbbb29ea048b4c6195dec4
Carrier scan of (8oo) 322
6a32549b57a880753168ac4b57d4e3580ac778c01ecd5e014d8e5fba3806de33
Carrier scan of (8oo) 281
5babb4156fd5c6ac3349e7de0a5a4de7ebdb94d8e243714540469a23000a16e7
Carrier scan of (8oo) 280
22102a6843acb0de5febf73d5e7685a22ccb89d43fe2f91023053ec4a42c1a29
Carrier scan of (8oo) 252
49fa72f312e119bd6dcca88afb248eecbc6f4ee77c0a4078788a148f6e7d9299
Carrier scan of (8oo) 228
08ba0398d5f6eede44875c00c0dcc37756c97bcdd2afd7a042a7a6f69850dc35
Carrier scan of (8oo) 223
fb2f17d02ffbbaaada15c6aff3b074f14173d1959b066e4a4742a18a7b1ff073