{"id":56,"date":"2009-03-14T12:39:29","date_gmt":"2009-03-14T20:39:29","guid":{"rendered":"http:\/\/xiehang.com\/blog\/2009\/03\/14\/honeypot\/"},"modified":"2009-03-23T17:33:25","modified_gmt":"2009-03-24T01:33:25","slug":"honeypot","status":"publish","type":"post","link":"https:\/\/xiehang.com\/blog\/2009\/03\/14\/honeypot\/","title":{"rendered":"Honeypot"},"content":{"rendered":"

I was trying to re-install my ubuntu box as it has some wrong items in gnome menu due to previous language setting, but before I do that I came up with a crazy idea of making it a honeypot, and see how fast it can be hacked.<\/p>\n

So I changed the password of root to 12345 and hooked it with internet, I mean, externally accessible. I did it in the morning before I went to office, and by the time I got home in the evening, you know it started running something funny already (pscan2). Seems it was a pretty standard to make a zombie (I believe in China it is called “catching chicken”), and once it become a zombie, it started scanning other machines on the internet.<\/p>\n

They are using Yahoo’s Geocities to store their program, glad to see Yahoo is helping people in any mean …<\/p>\n

Anyway, get to re-install the machine again, have to be a fresh image as I have no idea of what they have done else. Oh yea, I have to move the machine back as I need wired internet connection and keyboard and monitor.<\/p>\n","protected":false},"excerpt":{"rendered":"

I was trying to re-install my ubuntu box as it has some wrong items in gnome menu due to previous language setting, but before I do that I came up with a crazy idea of making it a honeypot, and see how fast it can be hacked. So I changed the password of root to […]<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/posts\/56"}],"collection":[{"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/comments?post=56"}],"version-history":[{"count":3,"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/posts\/56\/revisions"}],"predecessor-version":[{"id":116,"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/posts\/56\/revisions\/116"}],"wp:attachment":[{"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/media?parent=56"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/categories?post=56"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/xiehang.com\/blog\/wp-json\/wp\/v2\/tags?post=56"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}