找回密碼
 註冊
樓主: liondog

吹下水 : 有幾多師兄, 係做it 架?

      [複製鏈接]
發表於 2011-8-31 13:46:03 | 顯示全部樓層
本帖最後由 MsLittle 於 2011-8-31 13:59 編輯


You may be interested in the following

Defending against DDoS and Advanced Attacks on Critical Infrastructure:

Organizer        :         ISOC-HK, HKCERT, HKCS-ISSID, ISACA, ISFS, PISA and VXRL

Date        :         2011-09- 03

Time        :         2:30pm-5:30pm (2.15pm start registration)

Venue        :         Lecture Theatre, 1/F HKPC Building, Kowloon Tong

Language        :         Cantonese

Charge        :         Free of charge

Target Audience        :         Open to members of coorganizers and supporting organizations, and HKCERT subscribers

Session         Time         Topic         Speaker         Resource
                What is DDoS and its Mitigation Strategies        Mr. Frank Tse, Nexusguard        -
                Web servers - a sure target        Anthony Lai & Alan Ho, VXRL        -
                Panel Discussion: The Lessons Learnt in the HKEx incident        Moderator: ISOC HK, panelists: Speakers + experts from co-organizing institutions        -

Further info from
https://www.hkcert.org/my_url/en/event/11090301

(But bewarned the more you know the less secured you will feel towards using the internet.
Many Network security experts will not use internet banking  Their phrase is " Will not touch it with a Barge Pole!")

回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 13:50:52 | 顯示全部樓層
本帖最後由 MsLittle 於 2011-8-31 13:57 編輯
dswhkg 發表於 2011-8-28 11:41
回覆 定風波 的帖子

Sure! Usually they can only caught the 看熱鬧的圍觀者.


One possibility is blackmail.  Pay us this or we make your site unavailable.

Second reason could just be to prove they (hacker groups) can do it.

third reason could be the HKEX IT team left vulnerability hole unpatched
eg) Cisco Security Advisory - Apache HTTPd DoS http://www.cisco.com/warp/public ... 110830-apache.shtml

(Only speculating)
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 14:35:21 | 顯示全部樓層
本帖最後由 MsLittle 於 2011-8-31 14:37 編輯
假波男 發表於 2011-8-30 18:44
這個討論,或者轉一個方向吧,
其實,hacking系經常性,
記得我仲系呢行時,每晚總有


As an illustration here is some security news of the last few days.

Source:  http://www.sans.org/newsletters/ ... 68&rss=Y#sID304

British Man Charged in Connection With Anonymous DDoS Attack (August 25)
A 22-year old student named as Peter David Gibson has been charged by British police for his alleged role in Distributed Denial of Service attacks carried out earlier this year under the banner of the Anonymous collective. Gibson was one of six people arrested in April by members of the Police Central e-Crime Unit (PCeU) for their allegedly taking part in the DDoS attacks carried out last January against a number of companies including MasterCard and PayPal. Gibson was charged with conspiracy to "do an unauthorized act in relation to a computer, with intent to impair the operation of any computer or prevent or hinder access to any program or data held in a computer or to impair the operation of any such program or the reliability of such data," contrary to Section 1(1) of the Criminal Law Act 1977. He is due to appear before Westminster magistrates court in London on September 7 to face the charges.

(The British police took  8 months to find their guy  whereas the HK police took several days to find the HKEX scapegoat!)

Apache Warns of Denial-of-Service Attack Vulnerability (August 24)
A warning has been issued to owners of websites powered by the Apache webserver software of a vulnerability which can be exploited using a relatively low number of requests directed at the server to cause a Denial of Service condition. A tool to exploit the vulnerability called "Apache Killer" has been released onto the Internet. The vulnerability was originally identified over four years ago and impacts servers running all versions in the 1.3 and 2.0 releases. A patch for the vulnerability should be released by the evening of August 26, but as release 1.3 is no longer supported, the patch will only apply to versions 2.0 and 2.2.


U.S. Firms Targeted In Online Sabotage Attack (August 23)
The FBI is investigating what appears to be an online sabotage attack which took place last year against a number of US online firms specializing in selling batteries online. In total the attacks, which happened in October 2010, have caused victims estimated financial losses of more than US$ 600,000. Analysis of the audit logs on the victims' servers indicate the attacks appear to have originated from botnets controlled by IP addresses located within Russia. While the attacks may have originated Russia, it is believed that they were sponsored by a US based competitor of the victim companies looking to inflict financial losses.

Security Breach Exposes 20,000 Log-ins (August 24)
A security breach at an events management company, Allianceforbiz.com, has exposed sensitive personal data belong to 20,000 people, including a large number of US government employees and contractors. The information was released in a spreadsheet posted to the Internet; it contained usernames, passwords, email addresses and whether the individual worked for a US government agency. Allianceforbiz.com is a trade show management company that manages conferences, meetings and trade shows on behalf of its customers. The individual claiming responsibility for the attack is said to be a supporter, but not a member, of the infamous Anonymous organization already linked to a myriad of break-ins to systems and applications worldwide.



Ukrainian Authorities Arrest Suspected Credit Card Fraud Gang (August 22)

In a statement released on Monday, the Ukraine's security service, SBU, said that earlier this month it arrested four people suspected of being in a gang responsible for up to US$ 20 million in fraudulent credit card transactions. The four accused are alleged to have broken into the computer systems of Ukrainian and international financial institutions and to have stolen the information necessary to create fake credit cards. The SBU stated that as part of the arrests, it also seized computer systems and equipment containing 100,000 financial records of individuals.
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 14:39:51 | 顯示全部樓層
MsLittle 發表於 2011-8-31 13:50
One possibility is blackmail.  Pay us this or we make your site unavailable.

Second reason could  ...

Blackmail?
If I were HKEX, I sure won't pay to the hacker, otherwise thousands of hackers line up for the money!!!

btw, about the Apache HTTPd Dos problem, HKCERT had an alert a day before https://www.hkcert.org/my_url/en/alert/11082901
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 14:50:56 | 顯示全部樓層
煩惱 發表於 2011-8-31 14:31
咁 ... 我去唔去聽好呀 ?

More u know, more u afraid of using Internet.

Just like eating junk food on street, more u know the food handling process, more afraid of eating... if you don't know much, u can enjoy the wonderful taste on the street, but may harmful to your health.
How u think, to know or not to know?
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 14:53:03 | 顯示全部樓層
本帖最後由 MsLittle 於 2011-8-31 14:55 編輯
煩惱 發表於 2011-8-31 14:31
咁 ... 我去唔去聽好呀 ?


If you have time go.  They often tell hacking stories.
Nothing too technical but it gives a view into the world of computer network security.

(But note it is free so expect a sales related talk)

PS Subscription to HKCERT is also free.
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 14:53:48 | 顯示全部樓層
dswhkg 發表於 2011-8-31 14:39
Blackmail?
If I were HKEX, I sure won't pay to the hacker, otherwise thousands of hackers  ...

That is probably (won;t pay) why the attack lasted several days!
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 15:05:01 | 顯示全部樓層
煩惱 發表於 2011-8-31 14:53
咁我都係唔識好 d ... 知少 d 開心 d 好過 ...

haha, if I use another example:

If you don't know anything about AIDS, then you could play with gals happily and played to your heart's content. Of course it also risky to your health.

To know or not to know?
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 15:38:25 | 顯示全部樓層
回覆 煩惱 的帖子

just blow water la... if the computer system is critical to u or ur company, then better take very carefully review on the security.

This happened few years ago, my colleague requested a remote Terminal Service urgently without go through our VPN channel, I then opened and mapped a public IP to the Terminal Server for her to use temporarily. However I forgot to restore it back.
3 days later, I found the server had already been hacked!  So quick!

Our company is a small nobody company, not attractive to hackers. And Window Terminal Server should have a login procedure to protect against outsiders. The hackers are so quick and so effective!
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 16:05:14 | 顯示全部樓層
煩惱 發表於 2011-8-31 15:45
照你咁講 ...其實坊間 d 防毒 s/w ... 都冇乜作用囉咪 ...

.... anti-virus is a little different from computer security. Anti-virus is for detect & remove malware; while computer security is to prevent information/resource from publication or tampering by unauthorized persons.

Some attacks (like trojan horses) can be prevented by anti-virus software, but some (like DoS) can't.
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 16:42:32 | 顯示全部樓層
回覆 煩惱 的帖子

yes, as its name indicated 防毒 only prevent virus.

To defense DoS, the firewall should determine if there is any unfriendly/abuse request (e.g. more than 3 read requests per second from the same IP), then it filters & blocks all following traffic from that IP.
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 17:59:44 | 顯示全部樓層
回覆 煩惱 的帖子

If you are not online, then no worry la.

Every computer have its value:
1) may be they can find something valuable: e.g. your bank account & password etc
2) Control your PC, make it to become a Zombie PC(疆屍電腦), you don't know that. When they start an attach, your computer will become a solders of their army; (e.g. attach HKEX)
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 18:46:01 | 顯示全部樓層
本帖最後由 ykkenmendd 於 2011-8-31 18:46 編輯
煩惱 發表於 2011-8-31 18:10
咁一般我地 home user 應該點做呀?


有咩好做 當唔知街照掃
http://141hongkong.com/forum/for ... horid=0#pid25588601
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 19:27:39 | 顯示全部樓層
本帖最後由 ykkenmendd 於 2011-8-31 19:27 編輯

鬼得閒控制你, 浪費人力
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 19:30:23 | 顯示全部樓層
ching我唔明白, 殭屍電腦是不是中國人改的名呢, 外國殭屍是自主不受控制的
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 19:38:16 | 顯示全部樓層
煩惱 發表於 2011-8-31 19:36
見 owner 靚仔就唔 hack 架咩?

鬼理你醜定靚, 人家每秒鐘幾百萬上落
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 19:52:51 | 顯示全部樓層
3ii话事解,你扮野
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 21:39:28 | 顯示全部樓層
煩惱兄, 一個比喻,你部pc,就好似路邊間屋,internet就好似大路,去邊都得。
有的security措施,就好似間屋關門關窗,
唔系個個人都入到屋,頂多窗口裝下。
裝左防衛系統就更安全。咁比喻,你會唔會安心的,定更不安?
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 21:40:30 | 顯示全部樓層
煩惱兄, 一個比喻,你部pc,就好似路邊間屋,internet就好似大路,去邊都得。
有的security措施,就好似間屋關門關窗,
唔系個個人都入到屋,頂多窗口裝下。
裝左防衛系統就更安全。咁比喻,你會唔會安心的,定更不安?
回覆 讚好 不讚 使用道具

舉報

發表於 2011-8-31 21:57:36 | 顯示全部樓層
MsLittle, there might be a fourth possibility -- revenge.
回覆 讚好 不讚 使用道具

舉報

您需要登錄後才可以回帖 登錄 | 註冊

本版積分規則

Archiver|聯絡我們|141華人社區

GMT+8, 2024-11-15 15:42

Powered by Discuz! X3.5

© 2001-2024 Discuz! Team.

快速回覆 返回頂部 返回列表