- Recommend:
- 0 Comments
Denial-of-Service Attack Threats Still Loom
Teaming of worms and zombies could make future attacks more devastating, say experts.
BALTIMORE, MARYLAND -- The types of massive distributed denial-of-service (DDOS) attacks that knocked several big e-commerce Web sites out of action earlier this year remain a viable threat that could grow even more sophisticated, according to experts at this week's government-sponsored National Information Systems Security Conference here.
DDOS attacks entered the public consciousness last February, when commercial sites belonging to EBay, Buy.com, and other companies were attacked with an overwhelming flood of network traffic. (See "FBI, Industry Scramble to Stop Hack Attacks.")
Speaking at this week's conference, Tom Longstaff, manager of research and development at Carnegie Mellon University's CERT Coordination Center security advisory service, says such attacks haven't disappeared, and he warns that their severity could increase.
In a DDOS attack, an intruder breaks into a system and turns it into a "zombie," then uses that machine to target Web servers run by other companies. There are now indications that worm programs are being used to automatically propagate large numbers of zombies, Longstaff warns. A DDOS attack utilizing a worm will spread "much more quickly, and it is much more difficult to trace back to the intruder," he says.
Longstaff and other experts at the conference--which was sponsored by the National Institute of Standards and Technology and the National Security Agency's National Computer Security Center--say there currently are no adequate mechanisms for stopping DDOS attacks.
Disgruntled Employees Are Threat
But the major concern among some attendees of the annual event remains not the criminal hacker from outside a company or government agency, but the "insider" threat from disgruntled employees. All the attention being given to external threats may be affecting the ability of some agencies to respond to ones from insiders, according to Lee Brandt, a network security officer at the Washington-based Federal Railroad Administration.
"The internal threat is still the big threat," Brandt says. But he adds that Congress "unfortunately is concentrating on the external threat." Brandt says he worries that funding to address internal security matters will be de-emphasized by policy makers as a result.
The biggest threats to corporate systems are from other countries, competitors, or insiders, says Jeff Moss, a security consultant and the founder and organizer of Def Con, the annual underground convention attended by hackers, security experts and law enforcement officials. (See "The Worst Web Threats.")
"You can't be a lone computer hacker and try to fence stolen information," Moss says. "Hackers are great at technology; they're not great at being criminals."
But information technology managers also share some of the blame for the risks their companies face, security experts say.
The number-one problem in security today is still [IT staffs] that do not keep their systems up to date," says Michel Kabay, a computer security expert at consulting firm Atomic Tangerine. "Most [security] exploits use known vulnerabilities, and most known vulnerabilities have known fixes, and they are free. The problem lies in organizations where security is not yet assigned a high priority."

For more enterprise computing news, visit Computerworld. Story copyright © 2011 Computerworld Inc. All rights reserved.
Would you recommend this story? YES NO
- Recommend:
- 0 Comments
-
Speed Up Everything!
PCWorld shows you the secrets to improve performance on all your hardware.
-
Master Windows 7!
Our expert guide will help you get the most out of Windows 7.
-
ThinkPad Edge E420 Lenovo Style in an Affordable Package
Buy now direct from Lenovo -
ThinkPad X220 Fast and light, with great input ergonomics and battery life, this powerhouse ultraportable is best-of-breed.
Buy now direct from Lenovo -
ThinkPad X120e One of the best netbooks ever, X120e has the best netbook keyboard ever--nothing else comes close
Buy now direct from Lenovo
- Cybercrime Fight Costing Companies More This Year
- Hacktivism Trumps Money as Motivation for Denial-of-Service Attacks
- Critical Systems at Risk Despite Water Utility False Alarm
- Comodo CEO Says DigiNotar Hack Was State-Sponsored
- LulzSec, Anonymous Hacks Were Avoidable, Report Says
- 2012 in Security: Rising Danger
- A Hidden Security Threat: Beware the Office Multifunction Printer
- 12 Criteria for Selecting the Best ERP System Replacement An ERP system is your information backbone and reaches into all areas of your business and value chain. Replacing it can open unlimited business opportunities. This white paper explains the 12 criteria that allow you to identify and select the solution that will meet these expectations.
- Leveraging Social Computing Technologies for ERP Applications This white paper details how Web 2.0 technologies support business strategies by improving efficiency, productivity, and collaboration.


















