.com.unity Forums
  The Official e-Store of Shrapnel Games

This Month's Specials

Air Command 3.0- Save $12.00
War Plan Pacific- Save $7.00

   







Go Back   .com.unity Forums > Shrapnel Community > Space Empires: IV & V

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #17  
Old August 15th, 2003, 03:44 PM
Thermodyne's Avatar

Thermodyne Thermodyne is offline
Lieutenant Colonel
 
Join Date: Dec 2000
Location: DC Burbs USA
Posts: 1,460
Thanks: 0
Thanked 1 Time in 1 Post
Thermodyne is on a distinguished road
Default Re: BLaster/Lovesan has a sibling now.

What is occurring here is a form of terrorism. Sure its probably bored kids, but they are putting people’s lives at risk. At my work the patch was installed on the test network the first week it came out, then on the servers shortly there after. Desktops were ignored, a) because we don’t have the bodies to address them, b) because Citrix shields them from the outside world. But when the DMV went down, the situation was reevaluated and we began to patch. So far, nothing has been found on any systems. There was a false alarm, but it was a bad power strip.

The main reason that these people can get away with this stuff is the current IP/TCP system we use. NAT makes it hard to trace events back to the source, but without NAT we would have to disconnect most of the world. Also, many of these attacks originate outside of the US, and are not subject to our laws. IPv6 will help the problem a lot, and implementation has been pushed up. The second thing that needs to happen is this: people need to be responsible for the systems they own. On my wan subnet there are about 60 systems, about 25 of them are infected and 4 of them constantly sniff data and test my firewall. If I catch it in my server logs, I know Comcast does. But Comcast refuses to take any action on the problem. People that unknowingly have infected systems need to be disconnected and referred to professional repair sources. People that knowingly hack and probe need to be prosecuted. The law allows for stiff penalties for gaining unauthorized entry into a protected network. But they do not do much to deter the attacks.

We need to develop a package of laws that address the illegal activity on the internet, and then apply minimum sentencing rules to those who break them. They should cover Sniffing, Unauthorized Access of all types, including the insertion of software (viruses and worms along with ad and spy ware) and the unlogged forwarding of email. Then we should remind the world that America gave them the internet and that we can also disconnect them. With that said we should ask them to sign a convention adopting the same rules. The states and nations that refuse (Nigeria, Iran, China come to mind) should then have there connectivity terminated. When I use my satellite, fully 1/3 of the background activity is probing by the Asian Pacific Network. Anyone care to guess who they are? They know about this on the hill, but I guess there is not enough money to be made from the law and order side of this problem.

This particular attack was aimed directly at MS, it looks for a folder that is only present on some MS systems and then goes to work. So the Authors had an axe to grind with MS. And they probably will brag about it sooner or later. I only hope that they are caught and severely punished. And if they are kids, I hope that the injured parties line up and sue their parent’s right out of their homes. If they did it at school, then the school should pay the damages, they are supposed to be supervising what happens on their systems. If the rumor about them hacking a backbone switch to insert the worm is true, then I hope the company that owns the switch has been in compliance as for as logging goes.
__________________





Think about it
Reply With Quote
 

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump


All times are GMT -4. The time now is 06:19 AM.


Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Copyright ©1999 - 2025, Shrapnel Games, Inc. - All Rights Reserved.