Hey, reread...
I said that Linux was a security risk period.
Base installs of RH are asking to be a DOS launch pad,
no argument.
If you've got a colo that has a B and no tripwires, you're
fuckered anyways ...get off that colo. Fuck my net you
can't plug a device in without my pager going off.
I'm going to doubt your "successful" sites are at risk.
They have staff. I'd say that 90% of your sub $5k
webmasters are your potential customers.
How many are hacked? Beats me, ... how many run IIS?
Fact remains... you used a scare tatic instead of a true
helpful hint. 99.9% of the programs listed by your find
are NEVER touched or are not vulnerable to a system
that has only 2 or 3 shells and the ports locked up as
any web colo should be.
I said a full printed report audit WAS A GOOD THING.
It should be done by ANYONE that values no disruptions
in there monthly checks.
|