• Home
  • About

Saved searches

  • Remove
  • Verified account @
Suggested users
  • Verified account @
  • Verified account @
  • Language: English
    • Bahasa Indonesia
    • Bahasa Melayu
    • Català
    • Čeština
    • Dansk
    • Deutsch
    • English UK
    • Español
    • Filipino
    • Français
    • Hrvatski
    • Italiano
    • Magyar
    • Nederlands
    • Norsk
    • Polski
    • Português
    • Română
    • Slovenčina
    • Suomi
    • Svenska
    • Tiếng Việt
    • Türkçe
    • Ελληνικά
    • Български език
    • Русский
    • Српски
    • Українська мова
    • עִבְרִית
    • العربية
    • فارسی
    • मराठी
    • हिन्दी
    • বাংলা
    • ગુજરાતી
    • தமிழ்
    • ಕನ್ನಡ
    • ภาษาไทย
    • 한국어
    • 日本語
    • 简体中文
    • 繁體中文
  • Have an account? Log in
    Have an account?
    · Forgot password?

    New to Twitter?
    Sign up
By using Twitter’s services you agree to our Cookie Use and Data Transfer outside the EU. We and our partners operate globally and use cookies, including for analytics, personalisation, and ads.
PaulM's profile
Paul McMillan
Paul McMillan
Paul McMillan
@PaulM

Paul McMillan

@PaulM

Security for clouds and open source projects. ❤ photography and cocktails. Working to make your internets safer. The sky is not falling, but we have work to do.

Joined December 2008
  • © 2016 Twitter
  • About
  • Help
  • Terms
  • Privacy
  • Cookies
  • Ads info
Dismiss
Previous
Next

Go to a person's profile

Saved searches

  • Remove
  • Verified account @
Suggested users
  • Verified account @
  • Verified account @

Retweet this to your followers?

Optional comment for Retweet
 
 

Saved searches

  • Remove
  • Verified account @
Suggested users
  • Verified account @
  • Verified account @
140

Are you sure you want to delete this Tweet?

Promote this Tweet

Block

  • Add a location to your Tweets

    When you tweet with a location, Twitter stores that location. You can switch location on/off before each Tweet and always have the option to delete your location history. Learn more

    Profile summary

    Your lists

    Create a new list


    Under 100 characters, optional

    Privacy

    Your reply includes the people in this conversation up to this point. Learn more

    Copy link to Tweet

    Embed this Tweet

    Embed this Video

    Add this Tweet to your website by copying the code below. Learn more

    Add this video to your website by copying the code below. Learn more

    Hmm, there was a problem reaching the server.

    Preview

    Log in to Twitter

    · Forgot password?
    Don't have an account? Sign up »

    Sign up for Twitter

    Not on Twitter? Sign up, tune into the things you care about, and get updates as they happen.

    Sign up
    Have an account? Log in »

    Two-way (sending and receiving) short codes:

    Country Code For customers of
    United States 40404 (any)
    Canada 21212 (any)
    United Kingdom 86444 Vodafone, Orange, 3, O2
    Brazil 40404 Nextel, TIM
    Haiti 40404 Digicel, Voila
    Ireland 51210 Vodafone, O2
    India 53000 Bharti Airtel, Videocon, Reliance
    Indonesia 89887 AXIS, 3, Telkomsel, Indosat, XL Axiata
    Italy 4880804 Wind
    3424486444 Vodafone
    » See SMS short codes for other countries

    Confirmation

     

    Buy Now

    Hmm... Something went wrong. Please try again.

    Previous Tweet
    Paul McMillan ‏@PaulM 25 Oct 2013

    Apparently many of you missed it. I took a screenshot of all unauthenticated VNC servers on IPv4. It took 16 minutes. http://results.survey.tx.ai 

    • Retweets 203
    • Likes 84
    • Tactical Maid Ville Ruohonen Josh Simmons Denis Elistratov⚡️ Jomon grawity Beme Carnpbell Kenn White yaleman
    7:09 PM - 25 Oct 2013
    203 retweets 84 likes
      1. Will Smidlein ‏@ws 25 Oct 2013

        Good on @PaulM for shutting it down. Hopefully nobody was able to do anything malicious.

        1 retweet 1 like
      2. View other replies
      3. Paul McMillan ‏@PaulM 25 Oct 2013

        @ws That's entirely the point - it's trivial to reproduce these results. My taking this index of them down doesn't fix the problem. :(

        0 retweets 0 likes
      4. Will Smidlein ‏@ws 25 Oct 2013

        @PaulM The scariest part was all the appliance stuff.

        0 retweets 0 likes
      5. Paul McMillan ‏@PaulM 25 Oct 2013

        @ws Yeah, I agree. That's also the hardest to fix.

        0 retweets 0 likes
      1. James Bos ‏@ifeelsick 25 Oct 2013

        @PaulM I leave an XP VM running with VNC for prime time viewing :)

        0 retweets 0 likes
      2. Paul McMillan ‏@PaulM 25 Oct 2013

        @ifeelsick If that's actually true, I probably took a picture of it. What IP?

        0 retweets 0 likes
      3. View other replies
      4. James Bos ‏@ifeelsick 25 Oct 2013

        @PaulM ...have incoming connections every 5 or 10 mins or so. Surprising a lot of people catch on that its a VM quite quickly!

        0 retweets 0 likes
      5. View other replies
      6. Paul McMillan ‏@PaulM 25 Oct 2013

        @ifeelsick I'm honestly most surprised that there's still as much stuff in the "whoah that REALLY shouldn't be on the net" category.

        0 retweets 0 likes
      7. James Bos ‏@ifeelsick 25 Oct 2013

        @PaulM surprised? Really!? :)

        0 retweets 0 likes
      8. Paul McMillan ‏@PaulM 26 Oct 2013

        @ifeelsick I kinda hoped someone else had already done this scan and sorted the problems out with the CERTs...

        0 retweets 0 likes
      1. Shaun Ruigrok ‏@Shaun_R 25 Oct 2013

        @PaulM @ws Thanks to Google Cache I can still see all those… how many fucking billboards do the South Koreans want?!

        0 retweets 0 likes
      2. Paul McMillan ‏@PaulM 25 Oct 2013

        @Shaun_R @ws Yeah, right? It'll take a while for everything to fall out of the caches and CDN...

        0 retweets 0 likes
      3. View other replies
      4. Will Smidlein ‏@ws 25 Oct 2013

        @PaulM @Shaun_R You can get it removed if you use Google Webmaster Tools.

        0 retweets 0 likes
      5. Paul McMillan ‏@PaulM 25 Oct 2013

        @ws @Shaun_R Yeah, I already did. I had a robots.txt in place a couple days ago, google indexed it before that.

        0 retweets 0 likes
      1. pblakez ™ ‏@pblakez 25 Oct 2013

        .@PaulM hmmm got this warning from malwarebytes ?pic.twitter.com/E3uST0FEFa

        0 retweets 0 likes
      2. Paul McMillan ‏@PaulM 25 Oct 2013

        @pblakez they categorically block the entire provider who lets me scan. Bit of a blunt till, that.

        0 retweets 0 likes
      3. pblakez ™ ‏@pblakez 25 Oct 2013

        .@PaulM ouch does that affect others on the host ?

        0 retweets 0 likes
      4. Paul McMillan ‏@PaulM 25 Oct 2013

        @pblakez they've been doing that to this host for some time now. Host is not exactly reputable.

        1 retweet 0 likes
      1. Ruben Orduz ‏@MassHaste 25 Oct 2013

        @PaulM @kantrn I wonder how many of those are legit (ie on purpose or neglect) and how many are backdoors left open on pwned machines.

        3 retweets 0 likes
      2. View other replies
      3. Paul McMillan ‏@PaulM 25 Oct 2013

        @WallOfFire @kantrn I think many of them are bad licensing policy by teamviewer and @realvnc combined with upnp.

        3 retweets 1 like

    Loading seems to be taking a while.

    Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

      Promoted Tweet

      false

      • © 2016 Twitter
      • About
      • Help
      • Terms
      • Privacy
      • Cookies
      • Ads info