CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 940
Comments: 25
block bottom
spacer spacer
image Honeypots: Network honeypots nab surprises image
Networks
Network honeypots nab surprises
By Andy McCue
Silicon.com
September 26, 2003

Holes in company networks are being exploited by hackers and fraudulent employees to store and distribute illegal pornography, media files and pirated software.

A honeypot network set up purely to attract and monitor the level and type of hacking activity on the Internet has found hackers are routinely scanning for misconfigured file transfer protocol (FTP) servers that allow them to upload and store material secretly on company networks for later download.

The Irish Honeynet was set up by Espion, Deloitte & Touche and Data Electronics last year to mimic a typical corporate Internet infrastructure but with the ability to detect and monitor all activity to and from the system.

In a recent test, Espion deliberately misconfigured the FTP server–-a regular occurrence for many firms--which allows for the transfer of files to and from hosts on the Internet. The FTP server was configured to allow anonymous uploads and the creation of directories, while preventing anyone from downloading any files.

This allows for anonymous uploads and hackers exploit these holes to use the system as a storage depository for the illegal distribution of software, music and pornography. After just two days the Honeynet FTP upload directory contained many new files and directories, including hacker tools and files to test the amount of storage space and download speed available.

Espion's advice is for companies to only allow anonymous logins on an FTP server where there is a genuine business need and to limit the size of an upload and the size of the FTP directory.

Mark Morris, head of forensics, intelligence and security at LogicaCMG, warned that the threat can also come from inside, with employees surreptitiously using the corporate network to run their own businesses or store illegal content.

At one firm where we investigated an outsourced IT helpdesk we found a sub-network that the company did not know about that was running an escort agency Web site and a counterfeit software operation, he said.

The warnings echo findings from a study by PSINet and PanSec last week, which monitored two mock banking sites--one with security and one without. The results showed a frightening level of hacking activity that could cripple firms who still leave security to chance.

ZDN
Posted on Monday, 29 September 2003 @ 05:25:00 UTC by phoenix22 (875 reads)
[ Trackback ]
image

"Honeypots: Network honeypots nab surprises" | Login/Create an Account | 0 comments
Threshold
The comments are owned by the poster. We aren't responsible for their content.

No Comments Allowed for Anonymous, please register
 
Login
spacer
Nickname

Password

Security Code: Type Security Code: Usage signifies AUP acceptance
· New User? · Click here to create a registered account.
block bottom
Related Links
spacer
· del.icio.us!
· digg it!
· reddit!
· TrackBack (0)
· Intel
· HotScripts
· W3 Consortium
· ZDNet News
· More about Networks
· News by phoenix22


Most read story about Networks:
Network Troubleshooting 101 – Part 1

block bottom
Article Rating
spacer
Average Score: 0
Votes: 0

Please take a second and vote for this article:

Bad
Regular
Good
Very Good
Excellent


block bottom
Options
spacer

Printer Friendly Page  Printer Friendly Page

block bottom
spacer spacer