Go Back   Velocity Reviews > Newsgroups > Computer Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Computer Security - Lets hear from the pro's

 
Thread Tools Search this Thread
Old 01-16-2004, 01:28 AM   #1
Default Lets hear from the pro's


On Fri, 16 Jan 2004 00:10:41 GMT, Rowdy Yates
<> wrote:

>So I watched this BBC news item on criminal activity on the internet.

The
>deal is, these people go around researching companies, find a target

and
>then stage a DoS attack on the company, demand money ransom and don't

stop
>until they get the $$$. Basically, "Internet extortion"...
>
>Here's the link....
>http://news.bbc.co.uk/1/hi/business/3265423.stm
>
>Shouldn't this stuff be easily stoppable & trackable by counter

measure
>technology? Or am I wrong...?


DoS attacks are very difficult to trace, because they are almost
always bounced off another system or use forged IPs.l. In an
old-fashioned SYN flood attack, for example, an attacker sends lots of
TCP SYN packets to a target, attempting to open connections and starve
the target of memory, bandwidth, or CPU cycles. But the attacker will
forge the source IP, usually of a non-existent address or addresses.
So, the target sends a TCP ACK back to the phony addresses, and never
receives a reply, but it still holds the conneciton open expecting a
completion eventually, usually for 60 seconds. If enough SYN packets
are sent, the target's connection queue is used up and no more new
connections can be made. In some cases, the target may run out of
memory or run out of CPU cycles and crash. If the target is on a
relatively slow connection compared to the attacker(s), the connection
may simply become saturated.

The following is one of the better sources on DoS, even thought there
are some important ones it doesn't talk about like IGMP and malformed
header attacks:
http://www.riverheadnetworks.com/re/...dos_tools.html

These have some good info too:
http://www.csm.ornl.gov/~dunigan/oci/bktrk.html
http://www.securityfocus.com/infocus/1729
http://www.insecure.org

Sponge
Sponge's Secure Solutions
www.geocities.com/yosponge
My new email: yosponge2 et yahoo dot com


sponge
  Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Help! I can't hear my favorite music by ipod attached to ipone. susi8307 Software 0 11-16-2007 02:14 PM
Can hear Winamp but not anything else Strange Kid General Help Related Topics 0 07-14-2007 09:48 AM
cannot hear the VOICES... on newer DVDs. David_nj_7@mailbolt.com DVD Video 5 07-03-2006 06:31 PM
jobless Recovery, many IT pros out of work Joe A+ Certification 6 02-08-2004 05:13 AM
Re: Commentaries of directors I'd love to hear John Harkness DVD Video 0 06-28-2003 03:41 PM




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46