Denial-of-Service Attack Threats Still Loom
Teaming of worms and zombies could make future attacks more devastating, say experts.
Patrick Thibodeau, Computerworld
BALTIMORE, MARYLAND -- The types of massive distributed denial-of-service (DDOS) attacks that knocked several big e-commerce Web sites out of action earlier this year remain a viable threat that could grow even more sophisticated, according to experts at this week's government-sponsored National Information Systems Security Conference here.
DDOS attacks entered the public consciousness last February, when commercial sites belonging to EBay, Buy.com, and other companies were attacked with an overwhelming flood of network traffic. (See "FBI, Industry Scramble to Stop Hack Attacks.")
Speaking at this week's conference, Tom Longstaff, manager of research and development at Carnegie Mellon University's CERT Coordination Center security advisory service, says such attacks haven't disappeared, and he warns that their severity could increase.
In a DDOS attack, an intruder breaks into a system and turns it into a "zombie," then uses that machine to target Web servers run by other companies. There are now indications that worm programs are being used to automatically propagate large numbers of zombies, Longstaff warns. A DDOS attack utilizing a worm will spread "much more quickly, and it is much more difficult to trace back to the intruder," he says.
Longstaff and other experts at the conference--which was sponsored by the National Institute of Standards and Technology and the National Security Agency's National Computer Security Center--say there currently are no adequate mechanisms for stopping DDOS attacks.
Disgruntled Employees Are Threat
But the major concern among some attendees of the annual event remains not the criminal hacker from outside a company or government agency, but the "insider" threat from disgruntled employees. All the attention being given to external threats may be affecting the ability of some agencies to respond to ones from insiders, according to Lee Brandt, a network security officer at the Washington-based Federal Railroad Administration.
"The internal threat is still the big threat," Brandt says. But he adds that Congress "unfortunately is concentrating on the external threat." Brandt says he worries that funding to address internal security matters will be de-emphasized by policy makers as a result.
The biggest threats to corporate systems are from other countries, competitors, or insiders, says Jeff Moss, a security consultant and the founder and organizer of Def Con, the annual underground convention attended by hackers, security experts and law enforcement officials. (See "The Worst Web Threats.")
"You can't be a lone computer hacker and try to fence stolen information," Moss says. "Hackers are great at technology; they're not great at being criminals."
But information technology managers also share some of the blame for the risks their companies face, security experts say.
The number-one problem in security today is still [IT staffs] that do not keep their systems up to date," says Michel Kabay, a computer security expert at consulting firm Atomic Tangerine. "Most [security] exploits use known vulnerabilities, and most known vulnerabilities have known fixes, and they are free. The problem lies in organizations where security is not yet assigned a high priority."

For more enterprise computing news, visit Computerworld. Story copyright © 2007 Computerworld Inc. All rights reserved.
Go Wireless on Printing
Full Windows 7 coverage
- Great year-end deals

for small business! -
Get 24/7 live remote AT&T Tech Support 360* service along with select Lenovo* PCs (with Intel® Core™ 2 Duo processors) and save up to 200!
-
HP EliteBook* 6930p Notebook with Intel® vPro™ technology and a free HP Basic Docking Station - $641 instant savings!
- *Other names and brands may be claimed as the property of others. ©2009 Intel Corporation. Intel, the Intel logo, vPro and Core trademarks of Intel Corporation in the United States and other countries. All rights reserved.
Dell End of Year Deals
-
Ring in the New Year with Huge Deals on Dell Computers
Up to 30% Popular Dell Laptops, up to 25% off Popular Dell Desktops. Sales ends 12/31 5AM EST.
People who read this also read:
Best Prices on Printers
Stylus NX515 All-In-One PrinterPrice: $93.19
Photosmart C309 All-In-One PrinterPrice: $167.54
Photosmart Premium All-in-One Inkjet PrinterPrice: $119.99
Deskjet F4280 All-in-One PrinterPrice: $76.00
Artisan 810 All-in-One Inkjet PrinterPrice: $195.99
Officejet Pro 8500 All-In-One PrinterPrice: $238.26
- Perfect Printing Solutions Find just the right All-in-One Printer for you from HP. Visit the HP Resource Center.
- Acer Laptop Center Forget the Mouse...check out the next generation multi-gesture touch screen technology from Acer.
- Dell Shopping Center Check out great deals from Dell!
Cameras
Camcorders
Cell Phones
Components
Desktops
HDTV
Home Theater
GPS
Laptops
Monitors
MP3 Players
Networking &
Printers
Storage







