Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.sys.mac.system > #97538

Re: Port scan defense

From Jolly Roger <jollyroger@pobox.com>
Newsgroups comp.sys.mac.system
Subject Re: Port scan defense
Date 2016-12-04 20:00 +0000
Organization People for the Ethical Treatment of Pirates
Message-ID <eajavgF9193U1@mid.individual.net> (permalink)
References <2v6dnX63GZra1dnFnZ2dnUU7-LPNnZ2d@giganews.com> <eaj16tF6j6kU1@mid.individual.net> <u82dnXFnz_BxxtnFnZ2dnUU7-YfNnZ2d@giganews.com>

Show all headers | View raw


On 2016-12-04, Alan Browne <alan.browne@freelunchvideotron.ca> wrote:
> On 2016-12-04 12:14, Jolly Roger wrote:
>> On 2016-12-04, Alan Browne <alan.browne@freelunchvideotron.ca> wrote:
>>> I happened to look at the company WiFi/Router logs the other day and see
>>> a barrage of port requests occurring continuously.  I traced some of the
>>> IP's (Nigeria, Russia, Belarus ...).
>>>
>>> Is this all that common?
>>
>> Sure. Script kiddies and botnet operators have been scanning ports for
>> ages. Anyone running any WAN-facing services receives a fairly constant
>> barrage of traffic, including silly scripted brute force, vulnerability,
>> and other types of attacks. Nothing new there.
>>
>>> My router seems to be rejecting them well and if any got through to the
>>> Macs firewalls I haven't seen (or looked).
>>
>> WAN traffic won't reach computers on your network unless you have ports
>> mapped on the router to one or more of your computers. If you have ports
>> mapped to your computers, you should have a good idea of what services
>> you need to worry about.
>
> None at home.  I'll check at work this week, but pretty sure nothing is 
> hard mapped.
>
>>> For one thing all of our Macs are set to not wake on network requests.
>>>
>>> Are there specific vulnerabilities that I need to look at and fix?
>>
>> Without knowing more about your particular network setup and the
>> services you are actually running that are exposed to the WAN, that's
>> hard to answer.
>
> Thanks.  I was looking, I suppose, for a "top 10" list or some such, of 
> things that a Mac might be especially vulnerable to.

If you are really worried install Little Snitch so you can know and
finely control all outgoing traffic on the computer in question.

-- 
E-mail sent to this address may be devoured by my ravenous SPAM filter.
I often ignore posts from Google. Use a real news client instead.

JR

Back to comp.sys.mac.system | Previous | NextPrevious in thread | Next in thread | Find similar


Thread

Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 11:45 -0500
  Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-04 17:14 +0000
    Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 13:09 -0500
      Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 18:49 +0000
        Re: Port scan defense JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-04 16:18 -0500
          Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 23:34 +0000
          Re: Port scan defense David Ritz <dritz@mindspring.com> - 2016-12-04 19:02 -0600
      Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-04 20:00 +0000
        Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 15:17 -0500
          Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-05 17:58 +0000
          Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-05 14:56 -0500
            Re: Port scan defense John McWilliams <jpmcw@comcast.net> - 2016-12-05 13:01 -0800
              Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 16:18 -0500
            Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 16:18 -0500
              Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-05 23:10 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 18:18 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-05 23:34 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 18:45 -0500
                Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-06 00:34 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-05 20:11 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-06 04:28 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-06 08:40 -0500
                Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-06 15:17 +0000
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-06 11:24 -0500
                Re: Port scan defense Jolly Roger <jollyroger@pobox.com> - 2016-12-06 16:56 +0000
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-07 12:11 -0500
                Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-08 21:24 +0000
                Re: Apple Ads (Re: Port scan defense) Alrescha <alrescha@gmail.com> - 2016-12-08 16:46 -0500
                Re: Apple Ads (Re: Port scan defense) Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:39 -0500
                Re: Apple Ads (Re: Port scan defense) Alrescha <alrescha@gmail.com> - 2016-12-09 13:03 -0500
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-10 09:21 +1100
                Re: Apple Ads (Re: Port scan defense) Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-10 04:36 +0000
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-10 19:39 +0000
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 15:55 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 16:05 -0500
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-09 12:17 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-09 14:18 +0000
                Re: Apple Ads (Re: Port scan defense) Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:46 -0500
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-10 20:11 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-10 09:48 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-10 20:42 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-11 13:11 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-12 00:06 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-12 14:22 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-12 23:41 +0000
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-12 18:59 -0500
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-13 13:37 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-13 22:03 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-14 21:54 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-14 19:48 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-15 09:02 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-15 21:45 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-16 11:28 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-17 16:06 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-18 10:10 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-18 16:22 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-19 10:05 +1100
                Re: Apple Ads (Re: Port scan defense) Doc O'Leary  <droleary@2015usenet1.subsume.com> - 2016-12-19 15:38 +0000
                Re: Apple Ads (Re: Port scan defense) dorayme <do_ray_me@bigpond.com> - 2016-12-24 07:00 +1100
                Re: Apple Ads (Re: Port scan defense) Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-13 05:35 +0000
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-09 18:03 -0500
                Re: Apple Ads (Re: Port scan defense) JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-09 18:18 -0500
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-09 18:27 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 09:33 -0500
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-10 10:24 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 12:02 -0500
                Re: Apple Ads (Re: Port scan defense) nospam <nospam@nospam.invalid> - 2016-12-10 12:40 -0500
                Re: Apple Ads (Re: Port scan defense) Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-10 12:43 -0500
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 07:02 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:49 -0500
                Re: Port scan defense MistahJohnson <null@example.com> - 2016-12-10 07:07 +0000
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 07:03 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-09 10:30 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 10:51 -0500
                Re: Port scan defense Don Bruder <dakidd@sonic.net> - 2016-12-06 09:30 -0800
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-06 12:38 -0500
                Re: Port scan defense Krzysztof Mitko <invalid@kmitko.dot.list.at.pl> - 2016-12-06 18:50 +0100
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-06 12:53 -0500
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 07:07 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-09 10:30 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-09 11:00 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-09 11:03 -0500
                Re: Port scan defense Barry Margolin <barmar@alum.mit.edu> - 2016-12-10 17:21 -0500
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-10 17:42 -0500
                Re: Port scan defense Don Bruder <dakidd@sonic.net> - 2016-12-10 16:53 -0800
                Re: Port scan defense "Happy.Hobo" <Happy.Hobo@Spam.Invalid> - 2016-12-10 19:28 -0600
                Re: Port scan defense nospam <nospam@nospam.invalid> - 2016-12-11 07:36 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-11 02:24 +0000
                Re: Port scan defense "Happy.Hobo" <Happy.Hobo@Spam.Invalid> - 2016-12-06 16:46 -0600
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-06 18:51 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-07 07:52 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-09 08:17 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-06 15:20 +0000
                Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-06 18:51 -0500
                Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-07 07:40 +0000
                Re: Port scan defense Nelson <nelson@nowhere.com> - 2016-12-09 06:55 -0500
  Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 18:44 +0000
    Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 14:23 -0500
      Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 19:51 +0000
        Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 15:15 -0500
      Re: Port scan defense JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-04 16:23 -0500
        Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 16:36 -0500
          Re: Port scan defense JF Mezei <jfmezei.spamnot@vaxination.ca> - 2016-12-04 16:47 -0500
            Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 16:52 -0500
          Re: Port scan defense Lewis <g.kreme@gmail.com.dontsendmecopies> - 2016-12-04 23:36 +0000
            Re: Port scan defense Alan Browne <alan.browne@freelunchvideotron.ca> - 2016-12-04 18:51 -0500
        Re: Port scan defense "Happy.Hobo" <Happy.Hobo@Spam.Invalid> - 2016-12-04 18:42 -0600

csiph-web