GIGJ.COM
welcome to my space
X
Personal Injury | Languages | Soups | Photography | Email | Prepress | Exotic Locations | Computer Games | Related articles
Welcome to:gigj.com
Search:  
NAVIGATION: Home >>
Israeli Teen Finds Web Full of Security Holes
Published by: jane 2008-12-01
An independent consultant in Israel has released the results of one of the first exhaustive surveys of Internet security, hoping to provide a wake-up call for Internet companies.

With the help of a piece of homemade scanning software, Liraz Siri probed nearly 36 million Internet hosts worldwide over a period of eight months. Siri and his program, the Bulk Auditing Security Scanner or BASS, went looking specifically for UNIX systems that were vulnerable to 18 widely known security vulnerabilities -- holes for which vendors have already released patches and other fixes.

Siri discovered that about 450,000 servers were susceptible to attack -- among them banks, e-commerce sites, nuclear weapons research centers, and even computer security companies. While they comprise less than 2 percent of the total, Siri says they're the tip of the iceberg.

"Statistically, we're OK. But you can do anything you want with those 2 percent, including using them to penetrate affiliated systems, which you really don't want. One group organized and funded could write the right software and really take control of a really impressive arsenal of computers on the Internet."

A Comprehensive List Of Computer Hacker Incidents::
1997.07.14 Danish computer guy finds hole in Netscape; asks for big reward money 2001.01.15 Indianu U School of Music hacked; stolen Social Security numbers, etc
http://www.governmentsecurity.org/archive/t5660.html
HOME
Besides ignoring security bulletins, Siri says many companies fail to think of the Internet as an organic system, in which a disease or security penetration in one remote section can spread throughout the entire organism.

Siri's report, titled "The Internet Auditing Project," has already generated considerable interest among information security professionals since it was released last week. But some experts say that despite its significance, Siri's work is unlikely to catalyze companies into action.

"The fact that he's found these things and no one cleans them up is absolutely no surprise. Customers have been told these things before, but they don't want to hear about it," said Bill Hancock , chief technology officer for Network-1, a Massachusetts firm which develops firewall and other security software.

"There's no return on investment from security, so all they want to hear about is how to open up their database to e-commerce. There's total denial of just how dangerous things can be," Hancock said.

On the other hand, some firms appear to be paying attention. During the course of the scan, Siri says he received legal threats from several companies who thought he was up to no good.

Siri, who just turned 18, said he would have liked to continue his unfunded research a bit longer before going public, but he had a looming deadline.

"I am going to be drafted very soon and will have very little personal freedom. I wouldn't be able to publicize my work until 2004, so there was a window of opportunity I needed to exploit."

The full report, as well as the source code to BASS, the scanner developed by Siri, are available for free download from the Security Focus Web site.


Scoot Allies With CurrantBun
eToys Ready For Holiday Rush

PRINT Add to favorites
#If you have any other info about this subject , Please add it free.#
Your name:
E-mail:
Telphone:

Your comments:


If you have any other info about Israeli Teen Finds Web Full of Security Holes , Please add it free.
  • how do you think obama will fair in a head to head debate vs mccain
  • how does clinton obama and mccain feel about the subject of education
  • would obama voters still vote for a man that has working connections to domestic terrorist
  • what kind of hats do you hate the most
  • when you watched obama 039 s victory speech did you feel in the presence of greatness
  • has it been a good day or bad day for you
  • that or some good sayings about being true to your self
  • why are the obama endorser stooges putting words into the mouths of blacksl saying blacks hate bill
  • how many pounds of hope can we expect under an obama presidency
  • i am fat i want to reduce my weight and also i am going for job give some easy tips to reduce my weight
  • adding quotes into writing
  • i settled out of court after after a certain product blew up in my face back in 1991 can you help me
  • what political experience does obama have what political failures has he had to overcome
  • is stephenie meyer going to publish midnight sun
  •  
  • dad is trying to get out of back child support with my mom what are the legalities
  • how can you support obama knowing that in illinois he favored killing babies born prematurely
  • eclipse did edward come prepared with a lighter because he knew that he would have to kill a vampire
  • do we consetvatives obama haters want to start our own site
  • are the votes for obama going to disappear once the republicans
  • i need this break up song
  • psychic assistance please intuitive responses much appreciated
  • how bad does obama want to do a in your face dance
  • can anyone explain to me what this quote means
  • how do you get voters to realize that obama is corrupt and to vote more responsibly
  • will obama really cleanup washington and ask for resignation of dems that created the economic mess we are in
  • why did barack obama write a book with a title honoring his father
  • when do you think i 039 ll get my period

  • About us -Site map -Advertisement -Jion us -Contact usExchange linksSponsor us
    Copyright© 2008 gigj.com All Rights Reserved
    Site made&Support support@gigj.com    E-mail: web@gigj.com