Virus/trojan tunnel out from behind firewall?

From: David Carmean (dlcat_private)
Date: Sun Feb 24 2002 - 11:15:25 PST

  • Next message: Robert Graham: "Re: UDP Scan port 53(dns) -> dst port <1024"

    Greetings.  New to the list; have looked through a few months of 
    the archives and hadn't seen this come up:
    
    Have there been any cases of a trojan/virus/etc tunnelling out from 
    behind a firewall and thus providing an attacker a way into the 
    "chewy center"?  
    
    
    ----------------------------------------------------------------------------
    This list is provided by the SecurityFocus ARIS analyzer service.
    For more information on this free incident handling, management 
    and tracking system please see: http://aris.securityfocus.com
    



    This archive was generated by hypermail 2b30 : Sun Feb 24 2002 - 20:09:30 PST