[4293] in cryptography@c2.net mail archive
Re: references to password sniffer incident
daemon@ATHENA.MIT.EDU (Rick Smith)
Mon Mar 8 19:18:08 1999
Date: Mon, 08 Mar 1999 13:57:58 -0600
To: Greg Rose <ggr@qualcomm.com>, cryptography@c2.net
From: Rick Smith <rick_smith@securecomputing.com>
In-Reply-To: <199903080329.OAA05940@era.qualcomm.com>
At 02:29 PM 3/8/99 +1100, Greg Rose wrote:
> .... For part of this, I wanted to
>refer to the incident where someone mounted a password sniffer at a major
>network hub (MAE-West?) a couple of years ago. But I haven't turned up
>anything useful in a Web search. I didn't dream this incident, did I?
Based on memory, I believe that was early '94 involving an ISP named Panix.
There was a CERT advisory on password sniffing as a result. Also check over
CERT quarterly reports. They used to make regular statements about recent
incidence of sniffing.
Rick.
smith@securecomputing.com