Glenn Brunette's Security WeblogRambling musings and practical tips (mostly related to security).Tracking Infected Telnet Worm Machines- February 28, 2007 Today, there has been a lot of discussion about the new telnet worm which exploits the recently announced telnet vulnerability in Solaris 10 and Nevada. Aside from the usual recommendation of you should not be using telnet. You should be using SSH, I would like to cast a vote for the use of IP Filter. IP Filter is quick and easy to configure and can help give you visibility into attacks such as this. Beyond its initial use as an enforcement point (blocking access to services such as...http://blogs.sun.com/gbrunett/entry/tracking_infected_telnet_worm_machines |