Info just like that!!!!!

G

Guest

Guest
I saw a post when i was netsurfing.
so if anyone have a opinion, please reply.From The Register

"By Kieren McCarthy
Posted: 31/05/2001 at 10:55 GMT


According to top security expert Steve Gibson, Windows XP threatens to make the Internet unstable as it will allow large numbers of people to launch uncontrollable denial-of-service attacks to whichever IP address they see fit.

Mr Gibson came across the flaw while doing an in-depth investigation into DoS attacks on his own site, grc.com. "In a fluke of laziness (or good judgement?) that has saved the Internet from untold levels of disaster," he wrote, "Microsoft's engineers never fully implemented the complete 'Unix Sockets' specification in any of the previous versions of Windows. (Windows 2000 has it.) As a consequence, Windows machines (compared to Unix machines) are blessedly limited in their ability to generate deliberately invalid Internet packets."

These invalid Internet packets are what malicious Internet users fire at sites from a range of computers. So many are aimed at a particular site that all the bandwidth is used up and so the site disappears from view for all other Internet users as they get no information to or from the site's server.

All Windows OSes until Windows 2000 and now Windows XP would not allow someone to "spoof" the source of such Internet packets. This means that a sysadmin can see where they are coming from and then block all data from that PC - freeing up bandwidth and letting others see the site. Spoof packets don't allow you to do that.

Why, if Windows 2000 and all machines running on Unix can already spoof packets, do we need worry about Windows XP allowing the same thing?

Simple: Windows XP is a consumer OS and so will be taken up by a huge number of technically illiterate consumers. These are precisely the people that hackers will target due to their limited understanding of security issues. They will allow Trojans, Zombie and other types of malicious program on their PCs, they will remain unaware of them and they won't be able to remove it, even if they do discover them.

This means that the opportunity for hackers to control and direct others' computers as they wish will grow at an enormous rate as more and more people upgrade to Windows XP.

Steve Gibson writes in his piece: "When those insecure and maliciously potent Windows XP machines are mated to high-bandwidth Internet connections, we are going to experience an escalation of Internet terrorism the likes of which has never been seen before."

He calls on everyone to contact Microsoft senior execs and explain the potential problem, with the aim of removing this ability, possibly in the first service pack it knocks out. He's serious. ®""""


So what do YOU tink of this !!!!????????????
 

peteb

Distinguished
Feb 14, 2001
2,584
0
20,780
Thre are valid concerns here - but the only issue is winsock.dll any hacker would replace or modify that dll and allow full IP features anyway.

I'd be surprised if this is such an issue. I'd be even more surprised if Microsoft see it as their problem. To be honest though, maybe Microsoft should include a inbuilt firewall for consumer OS? Difficult to see how it would be used or configured effectively though?

-* This Space For Rent *-
email for application details
 

kurokaze

Distinguished
Mar 12, 2001
421
0
18,780
MS is supposed to have included a firewall into
Windows XP by default.. but no way I'm trusting
it to protect my system if I ever decide to go
the XP route.. I still have a bitter taste in my
mouth over the licensing thing.

Intel Components, AMD Components... all made in Taiwan!
 

Kelledin

Distinguished
Mar 1, 2001
2,183
0
19,780
Oh, did you hear? Microsoft's ISA firewalling software (I believe it stands for Internet Security & Acceleration) had a DoS vulnerability come up only a few weeks after its release. Just another stumble in an already piss-poor track record for security...

Kelledin

"/join #hackerz. See the Web. DoS interesting people."
 
G

Guest

Guest
Yeah, they were probably using their own Microsoft firewall when they got hacked into a couple months ago!

Aklein

It's raining outside, and my lawn has grown a foot overnight!
 

lhgpoobaa

Illustrious
Dec 31, 2007
14,462
1
40,780
hahaha
have you seen microshafts webpage for security bullitens and patches to fix all the holes?
god damn! it makes swiss cheeze look SOLID.


I would show you some apathy, but i just cant be bothered.