Some of the most commonly-used firewalls are subject to a hacker exploit that lets an attacker trick a firewall and get into an internal network as a trusted IP connection. . NSS Labs recently tested half a dozen network firewalls to evaluate security weaknesses, and all but one of them was found to be vulnerable to a type of attack called the "TCP Split Handshake Attack" that lets a hacker remotely fool the firewall into thinking an IP connection is a trusted one behind the firewall. "If the firewall thinks you're inside, the security policy it applies to you is an internal one, and you can run a scan to see where machines are," says Rick Moy, president of NSS Labs. An attacker can then pretty much run wild in the network because the firewall mistakenly considers the IP address as a trusted one coming from behind the firewall. The link for this article located at Network World is no longer available. . Numerous firewalls possess vulnerabilities that allow for TCP Split Handshake Exploits and possible unauthorized intrusions.. TCP Split Handshake Attack, network firewall access, firewall security flaws. . Dave Wreski
Mandrakelinux products cover needs from the desktop (with the PowerPack) to critical infrastructure functions (with the Multi Network Firewall). The Multi Network Firewall operating system is able to control access to both an organisation's private intranet and the public internet. Mandrakesoft products are part of the software library which has been selected to modernize the infrastructure of France's education system. As well as the applications themselves, Mandrakesoft will deliver technical support and training to staff. . A spokesman for the Ministry explained: "Aside from the cost savings allowed by Linux, this agreement aims to encourage the use of software solutions that are based on open standards and can be easily integrated into public standards-driven infrastructures. The ability to modify or customize the applications purchased is important to us." The link for this article located at TechnologyNewsDaily is no longer available. . The financial advantages of adopting Linux are propelling a transformation in the educational infrastructure of France through the innovative offerings of Mandrakesoft.. Mandrakelinux, Education Modernization, Open Standards Solutions. . LinuxSecurity.com Team
AT&T has announced that it has added worm and virus protection to its Internet Protect service network-based firewall that lets businesses protect themselves from a variety of threats without having to deploy firewalls at each of their locations. . . .. AT&T has announced that it has added worm and virus protection to its Internet Protect service network-based firewall that lets businesses protect themselves from a variety of threats without having to deploy firewalls at each of their locations. The new capabilities, which will be added to the service next year, integrate worm and virus mitigation into AT&T's network-based firewall service. The firewall service deploys early identification and mitigation capabilities for attacks directly within the AT&T global IP network, and the firm claims that doing so can more effectively prevent attacks from proliferating and infiltrating customers' internal networks. Among the users of the Internet Protect service are the United States Olympic Committee and Pitney Bowes, a provider of integrated mail and document management solutions. "Once again, we are leading the industry by making early detection, intrusion prevention and cyber-attack mitigation available in the network, turning the network itself into a front-line security device," Kathleen Flaherty, AT&T chief marketing officer, said in a statement. The link for this article located at securitypipeline.com is no longer available. . Verizon's Secure Web service provides enhanced malware and spyware defenses, strengthening security barriers against online dangers.. AT&T Firewall, Internet Protect, Threat Mitigation. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.