- Recommend:
- 0 Comments
Denial of Service Attacks Expected
Cybercrime agency warns of suspected attacks on Internet infrastructure.
There is a high probability that the U.S. critical computer infrastructure, such as the Web site of the U.S. Department of Defense, is being targeted for Distributed Denial of Service attacks by cyberprotestors, according to a warning issued Friday by the National Infrastructure Protection Center (NIPC). The center is the U.S. Federal Bureau of Investigation's cybersecurity arm.
Denial of Service (DoS) attacks are those in which a target computer system is flooded with false requests for information to the point that it is unable to respond to legitimate requests, denying them service. Distributed Denial of Service (DDoS) attacks, the more damaging relative of DoS attacks, are those that use multiple computers worldwide to launch their attacks and are harder to combat. DdoS attacks knocked high-profile sites such as Amazon.com, Yahoo.com, and EBay.com offline over the course of a week in February 2000.
Online protests, both pro- and anti-United States, have been frequent since September 11, but have largely been limited to Web site defacements, the NIPC said. Although the DDoS activity that has gone on so far has been minimal, and mostly limited to attacks between protest groups, protestors have indicated that U.S. infrastructure will be a target, the NIPC warning said. But businesses and organizations unrelated to the September 11 attacks also could be targets, the NIPC said.
The NIPC cautioned organizations to "take a defensive posture and remain vigilant." The center also referred systems administrators to a list of best security practices offered by the government-funded security research body CERT/CC.
Conflicting Forecast
There may be no cause for alarm, however, as one company that tracks DoS and DDoS activity, SecurityFocus, hasn't seen much evidence that such an attack is imminent. SecurityFocus uses a product it sells called ARIS Predictor to monitor corporate networks in more than 138 countries to determine and predict attack trends and patterns. Though SecurityFocus had detected a 3 percent rise in the rate of communication between master computers that would control DDoS attacks and the systems used to launch the attacks, this is not a significant increase, said Arthur Wong, CEO of SecurityFocus. The master computers are ostensibly operated by hackers and would use systems called zombies to launch the attacks.
"At this point, we haven't seen any increase that is significant," Wong said. The increase that the company has seen "doesn't indicate that there's an attack imminent," he added.
The cyberprotest groups mentioned by the NIPC have been active, but their activities have so far been small scale, Wong said. In fact, "since September, there hasn't been a lot of significant [attack] traffic," he said. This may signal that "people are beginning to be more reluctant to launch frivolous attacks," he said, although at the same time he cautioned that this means that "when you do get attacks, they're going to be more serious."
Notwithstanding SecurityFocus' data, attacks could be pending, Wong said. Even if they're not, however, organizations ought to heed the NIPC's advice and take steps to better secure their systems, Wong said.
Would you recommend this story? YES NO
- Recommend:
- 0 Comments
-
Speed Up Everything!
PCWorld shows you the secrets to improve performance on all your hardware.
-
Stellar Tech Deals
Don't miss out on great deals from around the web.
-
ThinkPad Edge E420 Lenovo Style in an Affordable Package
Buy now direct from Lenovo -
ThinkPad X220 Fast and light, with great input ergonomics and battery life, this powerhouse ultraportable is best-of-breed.
Buy now direct from Lenovo -
ThinkPad X120e One of the best netbooks ever, X120e has the best netbook keyboard ever--nothing else comes close
Buy now direct from Lenovo
- Hacktivism Trumps Money as Motivation for Denial-of-Service Attacks
- Cybercrime Fight Costing Companies More This Year
- LastPass, Online Password Manager, May Have Been Hacked
- Twitter DDoS Attack Politically Motivated, Says Report
- Comodo CEO Says DigiNotar Hack Was State-Sponsored
- Will DDoS Attacks Take Over the Internet?
- File-Sharing Site MegaUpload Indicted for Internet Piracy, Shut Down by US
- 12 Criteria for Selecting the Best ERP System Replacement An ERP system is your information backbone and reaches into all areas of your business and value chain. Replacing it can open unlimited business opportunities. This white paper explains the 12 criteria that allow you to identify and select the solution that will meet these expectations.
- Leveraging Social Computing Technologies for ERP Applications This white paper details how Web 2.0 technologies support business strategies by improving efficiency, productivity, and collaboration.





















