|
|
|
CMMS Software - Selecting the Right CMMS
Good Computerized Maintenance Management Software (CMMS)
that schedules preventive maintenance work orders on your
equipment is an integral component of any efficient
maintenance department. Preventive and scheduled
maintenance, efficiently...
Finding the Right Performance Optimizer
So, you’ve decided to fine-tune your PC by using a performance optimizer. But there are hundreds of products available on the market and to find a solution that fits your need can be daunting. In this week’s article, I will explain what...
Introduction to Google Page Rank (PR)
For anyone looking to enhance their Google Page Rank (PR) to get a better place in the search results, we now have software that makes finding good links so much easier.
In case you didn't know, to get your PR rating up it is essential to...
Natural Filters from Au Naturel
There's a new plug-in in town. Buena Software has made available Au Naturel for After Effects, Final Cut Pro and Combustion. The software is a collection of effects that allows you amazing control over your image footage. With the new plug-in, you...
The Quickest Way I Know To Secure Your PC-Safety In 7 Easy Steps And Only Using Free Software While Not Missing The One Critical Piece Of Free Software That's Been Overlooked By Many
Can You Prevent Spyware, Worms, Trojans, Viruses, ... To Work When You Switch Your Pc On ? I Can And I Do It On A Pro-active Basis.
Surfing Means More And More To Stay Invisible, To Be Clean From The Inside And To Prevent Installment Of...
|
|
| |
|
|
|
|
|
|
Script Kiddies III - Grilled Kiddie
In my previous articles, "Script Kiddies - Vermin of the Internet" and "Script Kiddies II - A warning to parents", I described the Script Kiddie problem.
This article contains information for web site owners and surfers regarding what to do when your system is continiously "probed" from the same source, or if your site is compromised. Who you gonna call? KiddieBusters? (could be a good name for a web site?)
If you are running personal firewall software while surfing, you can actually do something with the logs. You can send them to your ISP along with an incident description. They may be able to chase it up on your behalf. Better still, if you can identify the IP address using a tracing program, send the firewall log with the trace results to the owner of that address along with time, location etc.
I run traces on some of my logs, but this can also be a bit dangerous as there is a possibility that the owner of the address detects that you are "pinging"* them and therefore revealing your own IP address. Properly configured firewall software can minimise the danger of this.
Also, the IP address shown does not necessarily mean that it is the Script Kiddie themselves. There are various cloaking devices that the Kiddies use to hide their true origin, or may only refer to the service they are using to launch the attack. But it doesn't hurt to send the IP owner a polite email to serve as an alert, especially if you have been able to establish a repetitive address.
How to write the email? The following is a message I recently sent to an ISP. (the IP and port numbers have been replaced with x's).
------------------
Greetings,
I have been receiving a number of warning messages over the last couple of days from my firewall software regarding an xxxx scan which seems to be originating from your service. Even as I am typing this I am receiving numerous warnings. It is currently 6.20pm Adelaide time, Monday 12 February. Could you please look into this for me as it is becoming highly annoying. Last night I had around 80 such warnings in 1 hour. Thanks. Below is my log of some of these scans and the copy of the trace results.
GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:15:18 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:19:00 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:19:08 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:19:38 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:19:38 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:19:54 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:19:56 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:21:00 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP FWIN,2001/02/12,18:21:04 +10:30 GMT,xxx.xxx.xxx.xxx:xxx,xxx.xxx.xxx.xxx:xxx,TCP
Please contact me if you require any further details.
----------------------
I also attached my "traceroute"** results, but have not included them here as they identify the customer number. The ISP responded to my message and said that they had "contacted" the customer. I received no further scans.
It isn't just the casual surfer who is affected by Script Kiddies. Web Site owners are often the target of "vandals", also known as "Web Crackers". Web cracking is a popular Kiddie past-time. These individuals derive great pleasure from making changes to your web site without your knowledge. They access authoring rights to your site by "stealing" your password in a variety of ways. It isn't financially,politically or religiously motivated, it's just vandalism.
A real hacker would not carry out this type of
foolishness, this is the realm of the gutless, immature Script Kiddie. It's a bit like that mindless graffitti you see sprayed all over our towns and cities.
In the case of the web site owner, it is imperative that you immediately contact your hosting service as the security of your site has been breached (and therefore probably the whole server). The server's logs record all the activity on your site, and Script Kiddies are notorious for leaving "footprints" behind.
Don't just shrug your shoulders and re-publish your site. What has just occurred to you is cyber-terrorism. There are a number of laws currently being introduced world-wide that will punish cyber-terrorists severely. It is unfortunate the offences are termed cyber-terrorism. In the case of the Script Kiddies it should be called cyber-idiocy. It should carry the death penalty, castration or at least they should be sentenced to a life of using a 386DX40 running Windows 95 rev. A! ;0)
Some other points of contact if your site is attacked are:
National Infrastructure Protection Center. The NIPC are a part of the FBI. On its site, there are forms that you can submit to report any incidents. It also contains up to date information on security threats and advice for ecommerce merchants.
http://www.nipc.gov/ For a more detailed listing of U.S points of contact, The Cybercrime site will have what you need:
http://www.cybercrime.gov/reporting.htm
In Australia, intrusions should be reported to the Australian Federal Police via your local Police Station. Hmmm.....we're a little behind the times methinks!
In the UK, well, I give up....couldn't find a thing except for a lot of talk. Once again, your friendly local bobby could probably help you out. If anyone does have any law enforcement reporting links for the UK or Australia, I'd be grateful for the information and would republish this article with it included.
In most countries, probably the best second point of call after your contacting your hosting service would be the Police.
The Internet community, either surfers, website owners or ecommerce merchants will only stamp out this problem if we actually do something about it. Don't let those valuable firewall logs go to waste. But if you are going to send them, ensure that what you send shows an established pattern of scans originating from the same source - at least 5 entries in a session. Random scans are very hard to track. A topic for another article.
Make it a national sport.....Grill a Kiddie!
*ping - Ping is a basic Internet program that lets you verify that a particular IP address (a set of unique identifier numbers, e.g 192.168.0.1) exists and can accept requests
**traceroute - Traceroute is a utility that records the path stops through the Internet between your computer and a specified destination computer
Michael Bloch michael@tamingthebeast.net http://www.tamingthebeast.net Tutorials, web content and tools, software and community. Web Marketing, eCommerce & Development solutions. _____________________________________________
Copyright information....If you wish to reproduce this article, please acknowledge "Taming the Beast" by including a hyperlink or reference to the website (www.tamingthebeast.net) & send me an email letting me know. The article must be reproduced in it's entirety & this copyright statement must be included. Thanks. Visit www.tamingthebeast.net to view other great articles FREE for reproduction!
About the Author
Michael is an Australian Information Technologies trainer and web developer. Many other free web design, ecommerce development and Internet articles, tutorials, tools and resources are available from his award winning site; Taming the Beast.net (http://www.tamingthebeast.net)
|
|
|
|
|
| Tucows Downloads - Download Freeware and Shareware Software |
| Download freeware, shareware, and demos. Maintains over 45000 software titles that are tested, rated, reviewed and ready to download. |
| www.tucows.com |
  |
| Free Software Downloads and Software Reviews - Download.com |
| Download shareware, freeware and Demo software for PC, Mac, Linux, and Handhelds categorized into categories, plus software reviews. |
| www.download.com |
  |
| Computer software - Wikipedia, the free encyclopedia |
| This includes application software such as a word processor, which enables a ... Application software is often purchased separately from computer hardware. ... |
| en.wikipedia.org |
  |
| Shareware.com - Search for shareware programs and free software ... |
| Search for shareware programs from more than a dozen downloadable software directories. |
| www.shareware.com |
  |
| Jumbo: Free & Shareware MP3 files, Games, Screen Savers & Computer ... |
| Source of free and shareware computer programs and utilities for PC and Mac. Evaluate software and read product reviews. Download games and screen savers. |
| www.jumbo.com |
  |
| Computer Software in the Yahoo! Directory |
| Browse categories featuring sites devoted to computer software, including shareware and freeware download sites, operating systems, desktop customization, ... |
| dir.yahoo.com |
  |
| IEEE Software |
| IEEE Computer Society's magazine covering all aspects of software, including software engineering. |
| www.computer.org |
  |
| Free Downloads on ZDNet | Shareware, Trialware, Evaluation Software |
| ZDNet's Software Directory is the Web's largest library of software downloads. Covering software for Windows, Mac, and Mobile systems, ZDNet's Software ... |
| downloads.zdnet.com |
  |
| FSF - The Free Software Foundation |
| Free software is a matter of liberty not price. Think of "free" as in "free speech". |
| www.fsf.org |
  |
| Apple - Software |
| Software products for your digital life. ... The perfect addition for professional review. QuickTime Broadcaster. Encoding software for live events. ... |
| www.apple.com |
  |
| Open Directory - Computers: Software |
| In Partnership with AOL Search. about dmoz | report abuse/spam | help. the entire directory, only in Computers/Software. Top: Computers: Software (38471) ... |
| dmoz.org |
  |
| freshmeat.net: Welcome to freshmeat.net |
| About: The Web browser is probably the most frequently used software today, ... Web professionals can use the software for functional testing and regression ... |
| freshmeat.net |
  |
| Software - GNU Project - Free Software Foundation (FSF) |
| Listing of the GNU software packages. |
| www.gnu.org |
  |
| Sun Software |
| Get enterprise-class software--Solaris 10 OS, the Java Enterprise System, ... Sun Java StorageTek Software reduces cost and complexity with a single, ... |
| www.sun.com |
  |
| Internet Real Estate.com -- owns and operates a portfolio of the ... |
| SOFTWARE.COM · SWEEPSTAKES.COM · PHONE.COM PODCAST.COM ... Software.com | Sweepstakes.com | Phone.com | Podcast.com | Shop.com | Safety.com ... |
| www.internetrealestate.com |
  |
| Joel on Software |
| A weblog by Joel Spolsky, a programmer working in New York City, about software and software companies. |
| www.joelonsoftware.com |
  |
| Amazon.com Software: Computer & video games, business, accounting ... |
| Online shopping for computer & video games, business & office productivity software, software from Microsoft, Apple, Adobe & more; accounting, antivirus, ... |
| www.amazon.com |
  |
| IBM Software - Home Page |
| IBM home page for all of its software products, including Lotus and Tivoli, with keyword search, category browse and AZ product names. |
| www.ibm.com |
  |
| Opera web browser: Homepage |
| Copyright © 2006 Opera Software ASA. All rights reserved. Skip navigation. Opera Software ... Copyright Opera Software ASA . All rights reserved. ... |
| www.opera.com |
  |
| Google Directory - Computers > Software |
| Search only in Software Search the Web ... Software Categorized by Letter: A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ... |
| www.google.com |
  |
|