ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Desktop platforms Toolkit in association with http://ad.doubleclick.net/clk;205413468;14699245;m?http://adfarm.mediaplex.com/ad/ck/2397-58840-22058-14

If you can't trust FBI-issue software...

Robert Lemos, ZDNet News ZDNet.co.uk

Published: 14 Feb 2000 11:29 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Would you like Uncle Sam inside your PC?

Last December, the National Infrastructure Protection Centre -- a joint effort between the FBI and the US Department of Justice -- released a utility for Solaris and Linux computers that it claims will detect and eliminate the software agents which distributed-denial-of-service attack software uses to bombard other computers with a flood of data.

Now, in the aftermath of this week's spate of denial-of-service attacks, that software has drawn renewed attention. And, not surprisingly, some security specialists are not quite convinced that Uncle Sam software is a good thing. "It's from the FBI and I think they should get a certain level of trust," said "Space Rogue," a white-hat hacker and security researcher at @Stake "But I don't know if it is the FBI's job to post software."

Back in December, NIPC Director Michael Vatis said in a statement that the software was "one step further" than its core mission. "A central part of the NIPC's mission is to help protect critical computer networks by alerting private industry and government agencies of potential threats before an attack occurs," Vatis said. "In this case, we have gone one step further by developing a software application that can be used to detect the presence of a significant hacker tool and neutralise it."

Space Rogue pointed out that the software posted by NIPC has no source code attached -- meaning that security specialists cannot check that it works as advertised. Also, because a US agency developed the software, organisations in other countries may not want to use the applications; in fact, it could be illegal for them to do so.

Last week, Yahoo!, Buy.com, Time Warner's CNN.com, eBay, E*Trade, Amazon.com, Microsoft's MSN.com and ZDNet were attacked at different times by Web vandals who flooded each site with a deluge of data, essentially clogging up their Net connections. Service at the sites was either down altogether or severely slowed for several hours.

David Brumley, assistant computer security officer, Stanford University, stressed that the government has good reasons for keeping the source code locked up: Attackers could use such code to create a version that can't be detected.

Brumley has released his own utility called RID for scanning for attack programs. "The NIPC were not keen on releasing a remote scanning tool (like mine), because a hacker could use my tools to look for daemons placed by others and using those to launch their attack," he said.

What do you think? Tell the Mailroom. And read what others have said.

For full coverage see the Denial of Service Roundup.

Take me to the Hackers News Special

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
36 out of 57 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:











Related Jobs

Technical Author

Job Description: The work of a technical author will vary between employers and sectors, but typical activities include: * keeping up to date with ...

Applications Support Specialists in .NETBradford 35,000 Plus package

A number of .NET applications support specialists have been created by a global business based in Bradford. Key: VB, .NET, C#, ASP.NET, SQL Server, ...

Entertainment Systems Design Manager

The Entertainment Systems Design Manager needs to provide an identifiable point of leadership and role model for a team comprising of a diverse range ...

Featured Talkback

So if you upgrade to XP SP3 you can't uninstall Internet Explorer, I'm quite sure I'm having a Deja-vu feeling about MS preventing people from uninstalling Internet Explorer in other Windows products.

By: TheKLF99

Read full story:
Upgraders to XP SP3 warned over IE downgrades

Desktop Management Benchmarking

Test Your Desktop Management Systems

How good are your company's desktop management solutions? How do they compare with those of your peers?

Take two minutes to complete our new Desktop Management and Energy Consumption benchmark, and find out what issues your business needs to focus on.