- What hack is this?

Steven M. Bellovin smb at
Mon Jan 28 03:08:44 UTC 2002

In message <011601c1a7a7$22eae140$c89d05c7 at TAKA>, "John Palmer (NANOG Acct)" wr
>Anyone hear of some sort of a cracking method that uses cgi-bin/formmail?
>I've seen alot of these in my httpd/access_log files
>lately. I don't have anywhere on my system - I flushed all of
>the cgi-bin stuff that came with apache a long time ago.
Spammers are actively looking for such scripts to abuse to send junk mail.
See, for example,

		--Steve Bellovin,
		Full text of "Firewalls" book now at

More information about the NANOG mailing list