I found a rouge user and server in my sbox config today
I know I was not there last week as checked it before going on a weeks holiday
the scum bag has even put a line in the crontab to update their server of any ip changes to
guess they did not know my dns details or did not want to loose the connection if I changed it
I also found that my root pass would not change even though passwd said it had
have not re flashed and set a new pass and dns / port to be sure
thing is I have no idea how they got in / found me as I know the 5 people who connect to my sbox personally to its not like Im touting on the big CS sites
is it possible that the attact has come in via TSmedia as I installed this and only started to use it a week ago made no other changes to the system