Live data from Hacker News

Harvesting SSH Credentials: Insights from My Honeypot Network

uphillsecurity.com

1–10 of 34 posts

Re: Harvesting SSH Credentials: Insights from My Honeypot Network

#4
post #2

Having a root password of "toor" is very clever. Nobody will figure that one out.

toor was a default password for many devices for decades.

I've used unix-like OS's for 28 years and I don't remember coming across it as a password.

It is a common username (see: https://en.wikipedia.org/wiki/Toor_(Unix) ), the machine I am typing this on has it.

Re: Harvesting SSH Credentials: Insights from My Honeypot Network

#6
post #2

Having a root password of "toor" is very clever. Nobody will figure that one out.

Did you check out the statistics on the site? They listed 1233456, 12345, 1234,123 and 1 on the toplist of password.

If we are going to be clever we should follow the statistics and go for 12 that where not on the toplist!!

Re: Harvesting SSH Credentials: Insights from My Honeypot Network

#9
post #4

Earlier quoted context omitted.

toor was a default password for many devices for decades.

I've used unix-like OS's for 28 years and I don't remember coming across it as a password. It is a common username (see: https://en.wikipedia.org/wiki/Toor_(Unix) ), the machine I am typing this on has it.

It was the default password for the root user in Kali Linux for a while.
Post reply on HN