Am 11.06.19 um 19:34 schrieb Calum Mackay via Exim-users: > I'm still catching up, but… > > On 11/06/2019 7:43 am, Marius Schwarz via Exim-users wrote: >> Why didn't you harden your exim with the "allowed chars" change we >> posted here on the list, or did you? > > Is that still necessary/advised, now I'm running 4.92?
rm -rf / reboot from usb drive reinstall modern ShortCycle OSes like Fedora Why? Because your server got hacked with root access and you have no idea what the attacker did, what you did not find. Attackers can change your logfiles to remove or correct theire activities as they like, install Hypervisor Rootkits etc. etc. Trust a it forensics guys, you can only be sure if you cold start the server and boot from a trustworthy medium to forensic a system. best regards, Marius -- ## List details at https://lists.exim.org/mailman/listinfo/exim-users ## Exim details at http://www.exim.org/ ## Please use the Wiki with this list - http://wiki.exim.org/
