X-Recipient: archive-cygwin@delorie.com
X-SWARE-Spam-Status: No, hits=0.1 required=5.0	tests=AWL,BAYES_00,DKIM_SIGNED,DKIM_VALID,DKIM_VALID_AU,FREEMAIL_ENVFROM_END_DIGIT,FREEMAIL_FROM,RCVD_IN_DNSWL_NONE,T_TO_NO_BRKTS_FREEMAIL
X-Spam-Check-By: sourceware.org
MIME-Version: 1.0
In-Reply-To: <4CA16051.904@charter.net>
References: <4CA15E8B.5070602@charter.net>	<4CA16051.904@charter.net>
Date: Mon, 27 Sep 2010 23:38:41 -0400
Message-ID: <AANLkTimSG6jFns4axT5cJGyf3gFJZKrM4coY9YdGbiRs@mail.gmail.com>
Subject: Re: What does this look like to you folks?
From: Gregg Levine <gregg.drwho8@gmail.com>
To: cygwin@cygwin.com
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
X-IsSubscribed: yes
Mailing-List: contact cygwin-help@cygwin.com; run by ezmlm
Precedence: bulk
List-Id: <cygwin.cygwin.com>
List-Unsubscribe: <mailto:cygwin-unsubscribe-archive-cygwin=delorie.com@cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe@cygwin.com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin@cygwin.com>
List-Help: <mailto:cygwin-help@cygwin.com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner@cygwin.com
Mail-Followup-To: cygwin@cygwin.com
Delivered-To: mailing list cygwin@cygwin.com

On Mon, Sep 27, 2010 at 11:26 PM, SJ Wright <sjwright68@charter.net> wrote:
> SJ Wright wrote:
>>
>> First, a little background:
>>
>> In quite a few previous edits of my .bash_aliases file, I've used the sa=
me
>> alias to cd to a particular folder. Tonight I typed it in and got the
>> following as a return:
>>>
>>> [/cygdrive/c/blu/newest]
>>> mintty-cygwin>>smith
>>> + laugh
>>> + pwd
>>> /cygdrive/c/blu/newest
>>> + cd /cygdrive/c/taiga/
>>> + pwd
>>> /cygdrive/c/taiga
>>> + cd /cygdrive/c/taiga
>>> [/cygdrive/c/blu/newest]
>>
>> When I went to view .bash_aliases in nano, the alias 'smith' (changed at
>> my prerogative for discussion on this list) was missing. As far as I kno=
w,
>> it was there as recently as 5 AM today; I believe I used it around noon
>> today (27 September) as well.
>>
>> Should I be worried? I've never heard of Cygwin being a target for =A0--=
the
>> precise term escapes me at the moment so I'll say-- this kind of intrusi=
on,
>> if that's what it is. =A0As for potential "routes in," I have sshd runni=
ng on
>> cygrunsrv but nothing else. Time to change my login password, maybe?
>>
>> Steve W.
>>
>> --
>>
> Of course, I edited the path for the alias back into .bash_aliases (didn't
> want to give up the convenience, after all) but was prudent enough to use
> another word than "smith" for it. {Think first Duke of Marlborough.}
>
> SJW
>

Hello!
Well I ran Google on that term, and came up with the Wikipedia page.
((Which I won't cite here.)) But don't you mean Mr Churchill the PM
actually? (He also was entitled to use that entry into the peerage.)

You may not have anything to worry about, however I am not a security
expert as far as Cygwin goes, I'm more of a user on it, and even on
Linux.

I do suggest you change your passwords for both that system and for the SSH=
 one.

If that's not possible then make it impossible for the system to be
reached that way online via SSH.
-----
Gregg C Levine gregg.drwho8@gmail.com
"This signature fought the Time Wars, time and again."

--
Problem reports:       http://cygwin.com/problems.html
FAQ:                   http://cygwin.com/faq/
Documentation:         http://cygwin.com/docs.html
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple

