Re: outstanding challenge

From:
Date: 11/16/02


Date: Fri, 15 Nov 2002 17:26:54 -0800


Travis Casey wrote:
>
> sysdoor wrote:
>
> > Please make sure you understand this: we are not asking you to bring the
> > network
> > down the network is not ours to break. Neither are we asking you to
> > bring any service to a halt. The system in question is THE MACHINE
> > connected to IP address 62.4.71.36, and all intrusion methods are allowed.
> >
> > SYSDOOR will not take legal action against anyone trying to log in to this
> > machine.
>
> All intrusion methods? So, if I come over with a bulldozer, break in the
> side of your building, physically take the computer away, and mount the
> hard drive on another system, that's OK?
>

No, because that would "bring down the network" and especially "halt" at
least one "service". :-)

I'm honestly confused how this is a "challenge" or is supposed to mean
something. After all, the only thing someone can do to a system with
updates on any software they run (and these people only seem to be
running the newest Apache and offer no CGI, PHP, etc. scripts or
interfaces, nor anything else -- that seems to be it), it only allows
for people to syn flood or D/DoS the system or a service on it.

And you can't do that (which I can understand would not be relevant to
this claim), so what is this challenge supposed to be, I wonder? I mean,
who couldn't set up a server running Apache and just say "Try and get
root". They claim it's secure, the actual OS, the kernel, etc. Hmmmmm.
So, if this is what they want to claim, that the OS is secure, how
exactly is anyone supposed to test this? What is the point to this? This
leads me to believe, dare I say; these people are either fools and have
no idea what they are doing and are just trying to hype this up to
impress themselves and try and sell some trivial and nonexistent service
out of it, or, they are frauds.

-- 
Regards,
Robert McGregor - Email: admin@(remove)2host.com. Phone: 530-941-0690
Server admin, support & programing for shared & dedicated web servers
Secure, reliable hosting you expect and deserve! http://www.2host.com



Relevant Pages

  • Re: Questions on secure remote access to Fedora Core 2
    ... not secure at all, because hostnames can be forged. ... The users should generate themselves key pairs for SSH access. ... on the server, work on it, and then send it back. ... Linux-based, then Network Block Devices are a good idea, too. ...
    (comp.os.linux.security)
  • Re: 2003 Security -- IIS w/ incoming VPN connections
    ... Then buy a NetScreen Neoteris device from Juniper Networks which can provide a secure access point to your internal we server and allow access to no other boxes on your network. ... I've got to relocate a 2003 IIS box from my LAN to a direct Internet ...
    (microsoft.public.windows.server.general)
  • Re: Securing a Network - Whats the most secure Network/Server OS? - Is there a secure way t
    ... Anyways the question begs an answer as to why would you want to encrypt 'All' the traffic on an internal network that is reasonably secure and where the systems have been hardened appropriately. ... 630 computer all up, including the Server ... What is the best way to have 256-bit encryption of all traffic on ...
    (Security-Basics)
  • Re: Help a computer science student
    ... Each team has to do a network as secure ... That network had to have a dhcp, dns, pdc, web server, ... Port 2 is connected to a honeypot and port three is ...
    (comp.security.misc)
  • outstanding challenge
    ... An Invulnerable, 100% Secure ... One of the best-known figures in I.T. security has developed a series of methods ... One thing every cracker will tell you is that in today's world, no network ... Nevertheless, Michael Vergoz, the founder of SYSDOOR, has announced that his ...
    (comp.os.linux.security)

Loading