Jul. 8th, 2015

DHS redux

Jul. 8th, 2015 01:00 pm
sweh: (Straight Jacket)
So it looks like those scans were coming from NCATS
https://www.us-cert.gov/ccubedvp/getting-started-federal

This is only meant to scan networks associated with the Federal government. I'm guessing there was a misconfiguration, somewhere, 'cos Panix tell me they never requested any scans of their network :-)

Through a friend I contacted their SOC. I saw another scan yesterday and escalated. They just replied and told me that they've removed the IP ranges from their config.

On the plus side, the only thing flagged by their scanning was that I had TRACE enabled on my web site. Everything else looked good :-)

October 2025

S M T W T F S
   1234
567891011
12131415161718
19202122 232425
262728293031 

Page Summary

Style Credit

Expand Cut Tags

No cut tags
Page generated Nov. 20th, 2025 12:25 am
Powered by Dreamwidth Studios