|
|
|
bring down half of the servers with a simple PC and dsl line [belsec] |
Si vous voulez bloquer ce service sur vos fils RSS
Si vous voulez nous contacter ou nous proposer un fil RSS
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Présentation : Half of the servers of the internet are using Apache open source servers. They can now be brought down by a simple linux-pc that uses a program that will attack only the webserver function in such a way that it will become unavailable for all others. There is no real mitigation and if you read the conclusions by the Internet Storm Center even those solutions should be used with caution as they all have serious side effects. The biggest webservices will have enough defenses and back-up or failover and those that are running IIS can go one securing and patching their servers with other stuff but those with vulnerable servers such as Apache and Squid should get to work. There is no really simple solution. You will have to think conceptually and look at your infrastructure and your business plan and objectives. Every measure you will take will have its costs and/or implications for your visitors and users or clients. The public release of this tool is based upon a problem that has been written about since 2005 and has been proven to work since 2007 and about which nothing was done - probably because one thought that no one would do the old hat DDOS stuff anymore. But that is what changed since last year with the massive DDOS attacks against countries (Georgia, Estonia,....) or Tibetian dissidents or the sites of the Iranian government now. DDOS has become so simple that it has become very popular. It is also difficult to prosecute someone for a DDOS because if you are with many, they won't arrest everyone of them - if they can find them anyway because the first thing one does during a DDOS attack is try to drop the traffic. So anyone who knows how to install a phyton program on a linux box can now take out any website that is using apache 1 or 2 or squid and some others. THe IIS servers are NOT vulnerable (yet ?). http://isc.sans.org/diary.html?storyid=6613 You will read here how difficult it is to defend against such an attack if you didn't invest heavily in failover and proxying and fastload and stuff like that. http://ha.ckers.org/slowloris/ this is a must read [] [] [] [] [] []
Les derniers articles du site "Security Bloggers Network" :
- HP Private Consulting Fees Associated with GPS Sucks FDNY Dry - Bad ISPs - Cybersecurity bill changes, US president not permitted to shut down the Internet - Google Chrome Patched before Pwn2Own starts - Secure your Facebook - Minor Bit of Promotion PCI Book Rocks - MIT Researchers Developing Borg-like Computer Defenses - Security Briefing March 19th - PNC Former National City Bank Accounts Hacked - WoW Gamers Attacked
Menu > Articles de la revue de presse : - l'ensemble [ tous | francophone] - par mots clé [ tous] - par site [ tous] - le tagwall [ voir] - Top bi-hebdo de la revue de presse [ Voir]
Si vous voulez bloquer ce service sur vos fils RSS :
- avec iptables "iptables -A INPUT -s 88.191.75.173 --dport 80 -j DROP"
- avec ipfw et wipfw "ipfw add deny from 88.191.75.173 to any 80"
- Nous contacter par mail
| Mini-Tagwall des articles publiés sur SecuObs : | | | | sécurité, exploit, windows, microsoft, réseau, attaque, outil, vulnérabilité, audit, système, virus, internet, données, présentation, metasploit, linux, bluetooth, protocol, vista, scanner, réseaux, shell, engineering, rootkit, paquet, conférence, trames, wishmaster, téléphone, source, sysun, noyau, mobile, https, mémoire, rapport, botnet, téléphones, libre, reverse, navigateur, patch, snort, scapy, intel |
| Mini-Tagwall de l'annuaire video : | | | | vmware, security, virus, biometric, windows, lockpicking, password, botnet, metasploit, tutorial, attack, crypt, linux, network, iphone, server, exploit, wimax, conficker, virtu, virtual, engineering, cisco, reverse, shmoocon, wireshark, ettercap, hacker, firewall, internet, knoppix, rootkit, arduino, wireless, source, conference, backtrack, openbsd, brucon, systm, overflow, openssh, access, buffer, remote |
| Mini-Tagwall des articles de la revue de presse : | | | | security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone, server, inject, patch, apple, twitter, mobile, virus, ebook, facebook, vulnérabilité, crypt, source, linux, password, intel, research, virtual, phish, access, tutorial, trojan, social, privacy, firefox, adobe, overflow, office, cisco, conficker, botnet, pirate, sécurité |
| Mini-Tagwall des Tweets de la revue Twitter : | | | | security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall, network, twitter, vmware, windows, microsoft, compliance, vulnerability, python, engineering, source, kernel, crypt, social, overflow, nessus, crack, hacker, virus, iphone, patch, virtual, javascript, malware, conficker, pentest, research, email, password, adobe, apache, proxy, backtrack |
|
|
|
|
|