Re: Obama / McCain both hire incompetent IT staff, computers hacked




X-No-Archive: Yes


"Leythos" <spam999free@xxxxxxxxxx> wrote in message
news:MPG.23822f08e18ba5799896cb@xxxxxxxxxxxxxxxxxxxxxxx
In article <gf8pkf$9rm$1@xxxxxxxx>, chilly8@xxxxxxxxxxx says...
Leythos wrote:
In article <gf8lla$mg0$1@xxxxxxxx>, chilly8@xxxxxxxxxxx says...
I have mentioned many times people circumventing firewalls to get to
my online radio station (or any other). Well, I have found that
someone
at one consulting firm in Seattle has managed to circumvent the office
firewall and use their Comcast cable modem account to get to my
station.


And in doing so, there is a glaring path out of the firewall to a
residential connection that has no business reason.

Most of the Security Professionals spot this activity in seconds and it
is blocked, but it's blocked by default in a properly secured network
anyway.

Well, this was from an IT consulting firm that specalises in firewalls.
The fact that someone was able to get past the firewall proves that even
a so-called "secure" network is infallable.

No, it doesn't. Many places allow certain ports open, some don't apply
the same rules for secure networks as others.

A company that specializes in Firewalls is not any more secure than a
company that specializes in Paint or Flowers - it's about their rules
and desire to limit connections. They could allow streaming audio as a
general rule.

One would think that a IT consulting firm specialising in network
security would be able to secure their own office network. Then again,
like I said, even a "secure" network is not 100 percent infallable.


There is one insecure network in Saudi Arabia that people are
using to bypass workplace filtering, among other things. And
the owners of the colocation center in Jeddah don't care
about insecure machines on their network. The admins at
that centre will simply say "That is not illegal activity in
Saudi Arabia" and hang up on you. Simply put, if it
does not violate Saudi law, the will just tell you to take
a long walk off a a short pier. And they are right to do
so. Becuase the machines are in SAUDI ARABIA, they
are ONLY subject to SAUDI laws, and the owners of
that colocation centre are NOT SUBJECT to prosecution
OUTSIDE of Saudi Arabia. So if someone just happens
to use any machine there to bypass workplace filtering,
which the colocation centre owners apparently KNOW is
happening, they owners CANNOT BE PROSECUTED
in the Untied States becuase, as a Saudi-based company,
there are ONLY subject to SAUDI laws.

I found that there is a LOT of listening coming from
insecure proxies on that network. And someone on youjr
network right now could be using an insecure machine on
that network, and you would never know what they are
up to.


.



Relevant Pages

  • Re: What security package for SBS?
    ... I have a secure Windows network. ... I also have a secure MacMini and on occasion a secure Ubuntu. ... With a business class firewall stripping crap off all incoming traffic and properly implemented security policies in addition to giving your users absolutely no admin rights, there is no reason to believe you can't create a secure Microsoft Network. ...
    (microsoft.public.windows.server.sbs)
  • Re: Obama / McCain both hire incompetent IT staff, computers hacked
    ... firewall and use their Comcast cable modem account to get to my station. ... this was from an IT consulting firm that specalises in firewalls. ... a so-called "secure" network is infallable. ... the same rules for secure networks as others. ...
    (comp.security.firewalls)
  • Re: ICMP Ping constantly ticked--risk or not?
    ... If you have the file and print sharing exception enabled on your firewall ... only allows access from your network only in edit - change scope. ... configuration setting to allow ping response or not. ... instead of WPA to secure wireless network traffic. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: XP networking without NetBIOS or Active Directory
    ... I agree that firewall is the single most important issue in securing ... Your other point - from who am I going to secure the network by ... > Windows machines beyond that, but that is a good start. ...
    (microsoft.public.win2000.networking)
  • RE: can ping but not browse
    ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
    (Fedora)