The attacker then
directs them in unison to send a stream of irrelevant data to a single Internet host. The
result is that the power of one attacker is magnified thousands of times. Instead of an
attack coming from one direction, as is the case in a normal DOS, it comes from thousands
of directions at once. The best defense against a DDOS attack is to contact your
ISP to see if it can filter traffic at its border routers.
TIP
225
Securing Linux 6
Many people use the excuse ???I have nothing on my machine anyone would want??? to
avoid having to consider security. The problem with this argument is that attackers have a
lot of reasons to use your machine. The attacker can turn your machine into an agent for
later use in a DDOS attack. More than once, authorities have shown up at the door of a
dumbfounded computer user asking questions about threats originating from their computer.
By ignoring security, the owners have opened themselves up to a great deal of liability.
Intrusion attacks??”To remotely use the resources of a target machine, attackers must
first look for an opening to exploit. In the absence of inside information such as passwords
or encryption keys, they must scan the target machine to see what services are offered.
Perhaps one of the services is weakly secured and the attacker can use some known exploit
to finagle his or her way in.
Pages:
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489