greptilian logo

IRC log for #sourcefu, 2016-08-14

http://sourcefu.com

| Channels | #sourcefu index | Today | | Search | Google Search | Plain-Text | plain, newest first | summary

All times shown according to UTC.

Time S Nick Message
15:50 prologic who knows anything about brute forcing http basic auth over ssl?
15:52 prologic I have an implementation that now has exponential backoff to a maximum of 3days for failed authentication attempts. It slows down tools like hydra to a couple of centuries crawl
15:52 prologic with alarming and the right automation you'd just firewall such sources off
20:59 pdurbin prologic: yeah, they sound like bad actors. block 'em
22:50 prologic pdurbin: haha I was hoping for a little more insight than that :)
22:50 prologic but otherwise agreed

| Channels | #sourcefu index | Today | | Search | Google Search | Plain-Text | plain, newest first | summary

http://sourcefu.com