ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Online business Toolkit

Net attacks: The UK could be next

Will Knight ZDNet.co.uk

Published: 10 Feb 2000 13:01 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

At 6.30pm (GMT) Monday the largest Web site on the Internet, Yahoo.com, was rendered inaccessible by a flood of data peaking at a ferocious 1gigabit per second. Over the next three days other leading Web sites including eBay.com, CNN.com and ZDNet.com were struck by similar attacks. The matter is being treated as almost a national emergency in the US with the FBI and even President Clinton holding press conferences to address the issue. But whey have the rest of the world's Internet giants remained unscathed?

Mikael Arnbjerg, senior Internet analyst with IDC Europe, suggests that at this point the culprits are after maximum publicity. He says: "I imagine they're doing it for notoriety. If they had picked on someone nobody knows then we wouldn't of heard about it and it would be interesting. You wouldn't be writing about it."

Paul Cronin, head of penetration testing at computer security company CenturyCom, says however, that the situation in the UK could easily turn ugly. "At the time of the city of London demonstrations, for example, we had a lot of very high profile companies ask us to test their sites against Denial of Service attacks."

But so-called "co-ordinated distributed" DoS attacks present a different challenge to IT managers. Cronin explains this is because a large number of compromised machines are used to bombard a target site with fake traffic. This makes it possible to blitz a Web site with an unusually large amount of data but also makes it more difficult to locate the real source of an assault.

"At the moment, it is impossible to lock intruders out," adds Cronin. "The only solution is to have intrusion detection systems in place to detect the hacker before he has a chance to cause any damage."

Cronin explains that when an attack of this sort is detected it may already be too late. "The problem at Yahoo!, was that the hackers were only detected when it was already too late to put the necessary filters in place to block unwelcome guests. The hackers work by sending the programme to multiple sites around the world, so it is probable that Yahoo! was attacked from all sides."

Another security expert, warns the attacks could be just the tip of the iceberg. "What you have to worry about" says Matt Bevan, director of Tiger Team Security in London "is when the ones who did this own up to it saying 'we used these tools' available for download from 'this' site. Then everyone is going to start using them."

Bevan suspects it wont be long before a major UK site is targeted and agrees that politically motivated individuals are likely to be involved.

So, are the cream of UK sites getting nervous? A spokesman for Freeserve, rated as the third largest global domain in the UK, says it is ready. "We have invested an awful lot in the service and are confident of the security... The opportunity for people to stop our service will be minimal."

Is your .co.uk ready? Tell the Mailroom

Take me to the Denial of Service round-up

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
35 out of 95 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:













Related Jobs

Quant Developer - Algorithmic Trading Systems - Boutique Hedge Fund

If you feel you are suited to this role, please contact Nadia on 0207 337 2323, for more information or apply by sending your CV. The role will ...

Trade Analysts required for Major Oil Company, London

To find out more register your interest by sending in your CV today. Do you desire to work in a massive FTSE 100 energy company, with a high-profile ...

SAP MM/SAP SRM Manager - Prestigious SAP Projects - Urgent - South

The sort of projects you could manage are multi-million pound SAP ECC6 rollouts, reorganising the SAP infrastructure and bringing newly acquired ...

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

Featured Talkback

I wonder, who needs .asia domain? I cannot imagine, what would be useful for Microsoft.asia? Toyota.asia? Then let's register .europe (if .eu is too short). Or perhaps Microsoft.southamerica, Dell.australiaandnewzealand, Coca-Cola.africa... Sound funny? Then why not just use the global and country domains? Or perhaps it is time to drop the domains at all?

By: LadyRoot

Read full story:
Businesses advised to register .asia domains