funsec mailing list archives

Re: Question for the group


From: TheGesus <thegesus () gmail com>
Date: Sun, 12 Feb 2006 18:33:13 -0500

Of course I'm aware of this.  Proxies have been scanned and abused for
years.  But this is different.  The application "ezproxy", which is used by
quite a few edus, is being specifically targeted, and unless there's some
way to break out of the "normal" operation, the only thing you get, once
you're logged in, is access to books, periodicals and databases that have
research information in them.

That's not exactly your "normal" proxy situation.


Neither is advertising all of your customers...

http://www.usefulutilities.com/support/institutions.html

If something's up with ezproxy, if it's exploitable or whatever, your
vendor isn't helping you out by telling the world who their customers
are.  Is that unusual or is it just me?

That list alone could be the reason ezproxy is being targeted "worldwide".

_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: