Jul. 8th, 2015

DHS redux

Jul. 8th, 2015 01:00 pm
sweh: (Straight Jacket)
So it looks like those scans were coming from NCATS
https://www.us-cert.gov/ccubedvp/getting-started-federal

This is only meant to scan networks associated with the Federal government. I'm guessing there was a misconfiguration, somewhere, 'cos Panix tell me they never requested any scans of their network :-)

Through a friend I contacted their SOC. I saw another scan yesterday and escalated. They just replied and told me that they've removed the IP ranges from their config.

On the plus side, the only thing flagged by their scanning was that I had TRACE enabled on my web site. Everything else looked good :-)

August 2025

S M T W T F S
     12
3456789
101112 13141516
17181920212223
24252627282930
31      

Page Summary

Style Credit

Expand Cut Tags

No cut tags
Page generated Sep. 3rd, 2025 06:43 am
Powered by Dreamwidth Studios