Omega Owners Forum

Please login or register.

Login with username, password and session length
Advanced search  

News:

Please play nicely.  No one wants to listen/read a keyboard warriors rants....

Pages: 1 2 [3]  All   Go Down

Author Topic: Hackers...  (Read 3522 times)

0 Members and 1 Guest are viewing this topic.

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107163
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: Hackers...
« Reply #30 on: 29 July 2009, 18:06:30 »

Firstly, DON'T allow access to vital system or data areas, thats not what FTP is for. If you allow anonymous read, ensure that any virtuals deny anonymous.

IF you REALLY must access via FTP from work - and they is no valid reason now to use such an insecure system - ONLY allow your work IPs.  Block it either at firewall, or at IIS level, or preferrably both.

The reason they are being persistent with you is likely your IP has ended up on a 'suckers list', ie, has been compromised before (if you had your smtp open and relaying for example), as they assume (probably correctly) that as you have made one fundamental error, you're likely to make another.

Lock the tinker down hard for a few weeks, ie only allow in what you really, really, really need, thats the quickest way off a suckers list
Logged
Grumpy old man

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #31 on: 29 July 2009, 22:25:58 »

Quote
Firstly, DON'T allow access to vital system or data areas, thats not what FTP is for. If you allow anonymous read, ensure that any virtuals deny anonymous.

IF you REALLY must access via FTP from work - and they is no valid reason now to use such an insecure system - ONLY allow your work IPs.  Block it either at firewall, or at IIS level, or preferrably both.

The reason they are being persistent with you is likely your IP has ended up on a 'suckers list', ie, has been compromised before (if you had your smtp open and relaying for example), as they assume (probably correctly) that as you have made one fundamental error, you're likely to make another.

Lock the tinker down hard for a few weeks, ie only allow in what you really, really, really need, thats the quickest way off a suckers list
Ta for that advice TB. Never thought about the possibility of it been in a suckers list! Would make sence since it was used as an open relay for a couple of hours the other day  :-[ Woops!

I will disable FTP for now, as its not vital I guess. I can always RDP it and enable if I needed to.

Is there any other options available that I could put in place of FTP?
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

Radiomarko

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • Sunny Devon
  • Posts: 323
    • View Profile
Re: Hackers...
« Reply #32 on: 30 July 2009, 15:02:32 »

PM me his current IP -  he can be the target of my famous smurf attack. Google it for info, if he is a dork he may have left himself open.

Yes I have time on my hands this week, getting over the flu!   [smiley=lipsrsealed.gif]

-edited out incomprehensible whisky fueled rubbish.
« Last Edit: 30 July 2009, 15:04:09 by markjeffs »
Logged
I hate seagulls.   

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #33 on: 30 July 2009, 18:59:21 »

Quote
PM me his current IP -  he can be the target of my famous smurf attack. Google it for info, if he is a dork he may have left himself open.

Yes I have time on my hands this week, getting over the flu!   [smiley=lipsrsealed.gif]

-edited out incomprehensible whisky fueled rubbish.
As far as I know, the above IP is still him. :-X
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

Radiomarko

  • Intermediate Member
  • ***
  • Offline Offline
  • Gender: Male
  • Sunny Devon
  • Posts: 323
    • View Profile
Re: Hackers...
« Reply #34 on: 30 July 2009, 19:49:33 »

Not live, no ports open, possibly sleeping - or dead.   :-?
Logged
I hate seagulls.   

Ian_D

  • Omega Baron
  • *****
  • Offline Offline
  • Gender: Male
  • York
  • Posts: 2432
    • View Profile
Re: Hackers...
« Reply #35 on: 31 July 2009, 00:44:49 »

Quote
Not live, no ports open, possibly sleeping - or dead.   :-?
Oh right, Couldnt tell you mate anyway as I've disabled FTP for now...
Logged
[size=12]
LMF are utter rubbish - dont buy steering idlers from them! You've been warned![/size]

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107163
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: Hackers...
« Reply #36 on: 31 July 2009, 09:41:00 »

Quote
Not live, no ports open, possibly sleeping - or dead.   :-?
If he's any good, not getting a response on any port is to be expected.
Logged
Grumpy old man

Lizzie_Zoom

  • Guest
Re: Hackers...
« Reply #37 on: 31 July 2009, 11:20:45 »

Quote
Can't you send a crippling virus out into the hackers system? :-/

If that seems like a stupid question, sorry, it is because I know little about computer systems! ::) ::) ::)

To me it just appears to be a logical thing to do; attack is the best form of defence!! :D :D :D ;) ;)


Judging by the fact I have not received an answer to this previously posted question earlier in this thread  I assume I was asking a daft question! ::) ::) :D :D :D :D

However I am still interested to know why you cannot mount an attack on the hackers system whilst it is "open" trying to enter yours??

Is that not technically possible?  If not it should be, then no hacker would ever get away with corrupting your system. ;) ;) :y :y
Logged

deviator

  • Omega Knight
  • *****
  • Offline Offline
  • Chesterfield
  • Posts: 1398
    • View Profile
Re: Hackers...
« Reply #38 on: 31 July 2009, 14:44:49 »

It doesn't really matter how long or complex your password is, if you are using FTP it's sent over the internet in plain text. Therefore first port of call is a secure FTP, IE over SSL. Not perfect but better. Not only that, but you be on a different port and can close 20/21. Talking of ports, nothing stopping you from changing your ftp port to a random number (check it before you use it).

The other option is to create a sandbox, that'll keep most entry level hackers busy! I had a sandbox of 3 web-facing servers and 2 backend servers. I had people running around in there for days, in fact the funniest part was when one of them hacked my sandbox, drop a virus and then the next guy that got in, caught the virus themselves!
Logged
FCR and cam lock off kit available. Deposit maybe required. Contact me.

deviator

  • Omega Knight
  • *****
  • Offline Offline
  • Chesterfield
  • Posts: 1398
    • View Profile
Re: Hackers...
« Reply #39 on: 31 July 2009, 14:51:54 »

Quote
Quote
Can't you send a crippling virus out into the hackers system? :-/

If that seems like a stupid question, sorry, it is because I know little about computer systems! ::) ::) ::)

To me it just appears to be a logical thing to do; attack is the best form of defence!! :D :D :D ;) ;)


Judging by the fact I have not received an answer to this previously posted question earlier in this thread  I assume I was asking a daft question! ::) ::) :D :D :D :D

However I am still interested to know why you cannot mount an attack on the hackers system whilst it is "open" trying to enter yours??

Is that not technically possible?  If not it should be, then no hacker would ever get away with corrupting your system. ;) ;) :y :y


It's illegal. Transmitting virii and hacking into their computer is covered under Misuse of Computer act. Unless they are amatuer hackers, they would tend to be more secure than most users. Also any intelligent hacker will be using a 3rd party PC as a proxy. THerefore using a compromised PC to mount the attack on the end target. You then hack the man in the middle (some innocent person).
Logged
FCR and cam lock off kit available. Deposit maybe required. Contact me.

TheBoy

  • Administrator
  • *****
  • Offline Offline
  • Gender: Male
  • Brackley, Northants
  • Posts: 107163
  • I Like Lockdown
    • Whatever Starts
    • View Profile
Re: Hackers...
« Reply #40 on: 31 July 2009, 15:32:09 »

Quote
Quote
Can't you send a crippling virus out into the hackers system? :-/

If that seems like a stupid question, sorry, it is because I know little about computer systems! ::) ::) ::)

To me it just appears to be a logical thing to do; attack is the best form of defence!! :D :D :D ;) ;)


Judging by the fact I have not received an answer to this previously posted question earlier in this thread  I assume I was asking a daft question! ::) ::) :D :D :D :D

However I am still interested to know why you cannot mount an attack on the hackers system whilst it is "open" trying to enter yours??

Is that not technically possible?  If not it should be, then no hacker would ever get away with corrupting your system. ;) ;) :y :y
Technically a theoretical possibility, but in practice, very difficult. Ultimately, you would have to find a security flaw in his OS or app that he was using to send the data, and exploit that.
Logged
Grumpy old man

Lizzie_Zoom

  • Guest
Re: Hackers...
« Reply #41 on: 31 July 2009, 17:32:46 »

Quote
Quote
Quote
Can't you send a crippling virus out into the hackers system? :-/

If that seems like a stupid question, sorry, it is because I know little about computer systems! ::) ::) ::)

To me it just appears to be a logical thing to do; attack is the best form of defence!! :D :D :D ;) ;)


Judging by the fact I have not received an answer to this previously posted question earlier in this thread  I assume I was asking a daft question! ::) ::) :D :D :D :D

However I am still interested to know why you cannot mount an attack on the hackers system whilst it is "open" trying to enter yours??

Is that not technically possible?  If not it should be, then no hacker would ever get away with corrupting your system. ;) ;) :y :y


It's illegal. Transmitting virii and hacking into their computer is covered under Misuse of Computer act. Unless they are amatuer hackers, they would tend to be more secure than most users. Also any intelligent hacker will be using a 3rd party PC as a proxy. THerefore using a compromised PC to mount the attack on the end target. You then hack the man in the middle (some innocent person).


Thanks Deviator!! :y :y :y :y
Logged

Lizzie_Zoom

  • Guest
Re: Hackers...
« Reply #42 on: 31 July 2009, 17:33:36 »

Quote
Quote
Quote
Can't you send a crippling virus out into the hackers system? :-/

If that seems like a stupid question, sorry, it is because I know little about computer systems! ::) ::) ::)

To me it just appears to be a logical thing to do; attack is the best form of defence!! :D :D :D ;) ;)


Judging by the fact I have not received an answer to this previously posted question earlier in this thread  I assume I was asking a daft question! ::) ::) :D :D :D :D

However I am still interested to know why you cannot mount an attack on the hackers system whilst it is "open" trying to enter yours??

Is that not technically possible?  If not it should be, then no hacker would ever get away with corrupting your system. ;) ;) :y :y
Technically a theoretical possibility, but in practice, very difficult. Ultimately, you would have to find a security flaw in his OS or app that he was using to send the data, and exploit that.


Thanks TB! :y :y :y :y :y   
Logged
Pages: 1 2 [3]  All   Go Up
 

Page created in 0.016 seconds with 17 queries.