Re: Website Hacking Attempt - letting the IP Block owners know?
From: chris@nospam.comDate: 06/28/02
- Next message: Ralf Hildebrandt: "Re: Sec. Vulnerability in OpenSSH on HP-UX"
- Previous message: Jason: "ATM Security"
- In reply to: Jim Patrick: "Re: Website Hacking Attempt - letting the IP Block owners know?"
- Next in thread: Jim Patrick: "Re: Website Hacking Attempt - letting the IP Block owners know?"
- Reply: Jim Patrick: "Re: Website Hacking Attempt - letting the IP Block owners know?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: chris@nospam.com Date: Thu, 27 Jun 2002 21:25:08 -0700
On Wed, 26 Jun 2002 12:04:26 -0400, Jim Patrick <jpatrick@shentel.net>
wrote:
>In comp.security.misc, Jeffrey F. Bloss wrote:
>
>>This might be OK in a smaller or more obscure environment, where attacks
>>aren't all that common, but think about an environment like a large,
>>inter-campus network for a major university. Not only do you have more
>>exposure both in the simple number of machines and visibility or public
>>access, but the students themselves are naturally more "curious" than the
>>average corporate user. ;) The sheer volume of probing simply negates the
>>possibility of taking each and every one of them so seriously.
>
>Sheer volume is what computers are made for. Be interesting to see
>what the drop would be if you installed a "probe? block address" on
>all the servers. A block that lasts until the lease expires combined
>with a timed block on the computer name would be reasonably effective
>as a starting point.
And voila you create another potential DOS attack where the attacker
sends spoofed probes with addresses of legitimate customers.
- Next message: Ralf Hildebrandt: "Re: Sec. Vulnerability in OpenSSH on HP-UX"
- Previous message: Jason: "ATM Security"
- In reply to: Jim Patrick: "Re: Website Hacking Attempt - letting the IP Block owners know?"
- Next in thread: Jim Patrick: "Re: Website Hacking Attempt - letting the IP Block owners know?"
- Reply: Jim Patrick: "Re: Website Hacking Attempt - letting the IP Block owners know?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|