<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>schmichael&#039;s blog &#187; denyhosts</title>
	<atom:link href="http://blog.schmichael.com/tag/denyhosts/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.schmichael.com</link>
	<description>good good study, day day up</description>
	<lastBuildDate>Sat, 05 Nov 2011 23:13:47 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Summer of Hacks</title>
		<link>http://blog.schmichael.com/2008/05/13/summer-of-hacks/</link>
		<comments>http://blog.schmichael.com/2008/05/13/summer-of-hacks/#comments</comments>
		<pubDate>Tue, 13 May 2008 14:22:15 +0000</pubDate>
		<dc:creator>Michael Schurter</dc:creator>
				<category><![CDATA[GNU/Linux]]></category>
		<category><![CDATA[IT]]></category>
		<category><![CDATA[Open Source]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[denyhosts]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[linode]]></category>
		<category><![CDATA[ssh]]></category>

		<guid isPermaLink="false">http://michael.susens-schurter.com/blog/?p=317</guid>
		<description><![CDATA[My Linode has been experiencing a huge number of brute force login attempts in the past week. I don&#8217;t keep detailed statistics, but I would guess there have been 300 attempts in the past week as opposed to the usual &#8230; <a href="http://blog.schmichael.com/2008/05/13/summer-of-hacks/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<p>My <a href="http://www.linode.com/">Linode</a> has been experiencing a huge number of brute force login attempts in the past week.  I don&#8217;t keep detailed statistics, but I would guess there have been <strong>300 attempts in the past week</strong> as opposed to <em>the usual rate of about 500 attempts over 200 days (2-3 attempts per day)</em>.</p>
<p><a href="http://denyhosts.sourceforge.net/">Denyhosts</a> has been doing its job perfectly.  It should be illegal to run a Internet exposed SSH server without it or a similar tool.*</p>
<p>Thanks to HoopyCat in #linode for pointing me to a <a href="http://isc.sans.org/diary.html?storyid=4408">SANS Internet Storm Center article explaining the <em>Summer of Hacks</em></a> phenomenon. </p>
<p><small>* Unless of course you only accept key based logins.</small></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.schmichael.com/2008/05/13/summer-of-hacks/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

