Security researchers have responded to recent denial of service attacks against gaming websites and service providers that rely on insecure Network Time Protocol servers by drawing up a list of vulnerable systems.. Network Time Protocol (NTP) offers a means of synchronising clocks over a computer network. Features of the simple UDP-based protocol mean it is possible to abuse it to return a large reply to a small request. The link for this article located at The Register UK is no longer available. . Network Time Protocol (NTP) offers a means of synchronising clocks over a computer network. Features. security, researchers, responded, recent, denial, service, attacks, against, gaming, websites. . Dave Wreski
A year after surviving a massive distributed denial-of-service attack, the Internet's root servers are better fortified against hacker activity, thanks to behind-the-scenes deployment of a routing technique known as Anycast, experts say.. . .. A year after surviving a massive distributed denial-of-service attack, the Internet's root servers are better fortified against hacker activity, thanks to behind-the-scenes deployment of a routing technique known as Anycast, experts say. With Anycast, the root server operators have more than doubled the number of server farms available to handle the highest-level DNS queries. This routing technique heightens root server resilience by multiplying the number of servers with the same IP address and balancing the load across an army of geographically dispersed servers. A handful of the 13 root server operators have begun deploying Anycast since last year's attack, which didn't succeed in crashing DNS but rendered several root servers unavailable for legitimate queries. Experts say the deployment of Anycast is making the entire root-server system more resistant to outage. The link for this article located at NW Fusion is no longer available. . A year after surviving a massive distributed denial-of-service attack, the Internet's root servers a. surviving, massive, distributed, denial-of-service, attack, internet's, servers. . Anthony Pell
We all know that two-thirds of corporate hacks come from inside the firewall, making internal security as important as external. But what about your remote offices and SOHO workers? Are they as vulnerable to attacks as your corporate workers?. . .. We all know that two-thirds of corporate hacks come from inside the firewall, making internal security as important as external. But what about your remote offices and SOHO workers? Are they as vulnerable to attacks as your corporate workers? Why layered? Nearly two-thirds of all security breaches are caused by insiders accessing unauthorized information - something a corporate firewall can't stop. Most security experts believe layered security is the way to go, as it's only a matter of time before someone finds their way through any single layer. Furthermore, a good layered security system not only protects your key network access points, but also protects them against different avenues of attack, known as vectors, including insider attacks. The link for this article located at IDG is no longer available. . Layered security, or defense in depth, is vital for protecting remote offices from internal and external threats, especially with increased remote work demands.. Layered Security, Remote Office Security, Insider Threat Protection, SOHO Network Defense. . Anthony Pell
Avaya Labs announced today it is releasing Libsafe(TM) 2.0, an enhanced version of its free security software for the popular Linux operating system. Libsafe version 2.0 adds the ability to protect against security attacks that exploit ``format string'' vulnerabilities in software, . . . . Avaya Labs announced today it is releasing Libsafe(TM) 2.0, an enhanced version of its free security software for the popular Linux operating system. Libsafe version 2.0 adds the ability to protect against security attacks that exploit ``format string' vulnerabilities in software, including programs that are widely deployed as part of the Internet infrastructure. As a result, Libsafe 2.0 protects against the two most common forms of security attacks: `buffer overflow' and `format string.' Libsafe extends its protection to all application programs running on a system, and will even help to protect programs that have vulnerabilities yet to be discovered. Avaya Labs is the research and development arm of Avaya, a global leader in business communication solutions and services. The announcement was made at CeBIT, a communications show taking place here. "Enterprises worldwide are deploying servers and communication networks, counting on the high reliability of Linux," said Ravi Sethi, president of Avaya Labs. "Avaya is making Libsafe 2.0 available free to help protect our customers, existing and potential, from malicious security attacks. Our customers already benefit from additional Avaya Labs technology to enhance reliability by protecting against inadvertent errors." The link for this article located at LinuxPR is no longer available. . Cisco Innovations unveils SecGuard 3.0, bolstering defense mechanisms against memory corruption and input manipulation threats on Unix platforms.. Libsafe, Buffer Overflow Protection, Format String Security. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.