Make a record of a server being hacked (brute force cracking password)

Description:

Actually, I didn’t think about my server being hacked. Until today I found out that it’s actually my own server. I was anxious to set up a learning test. It would be really embarrassing if I was at work. So, there are servers. Please note that the port number access should be restricted to IP, try to limit your company IP and home IP, and the login password is more difficult to set to prevent brute force cracking.

Restricting access to port 22 login ip+password setting is a bit difficult, double insurance.

I always feel that I am playing around, mainly because I don't know so much about the server. I just studied today.

1. How did I discover it?

In fact, I received an alert from Alibaba Cloud several days ago. I haven’t taken it seriously, and I don’t think it matters anymore. I found that the machine is stuck a few days ago. Today, after knowing that the hacker attacked, I can run my steps inside and continue to attack other machines. , All processes take up a lot of resources, I hope you don’t know about it:

This is the introduction network of Alibaba Cloud

Guess you like

Origin blog.csdn.net/weixin_42081389/article/details/108649743