FAQ Profile Memberlist Usergroups Register
Log in to check your private messagesLog in to check your private messages -> Log in  
Server Attack Foiled

 
Post new topic   Reply to topic    Smartphone Thoughts Forum Index -> UPDATE Printable version
View previous topic :: View next topic  
Author Message
Jason Dunn
Executive Editor


Joined: 30 Jun 2003
Posts: 1477
Location: Calgary, CANADA

PostPosted: Mon Jan 24, 2005 12:30 pm    Post subject: Server Attack Foiled Reply with quote

If you were wondering what happened to our server this morning, it was under attack. 870 different computers were pounding our server with a known phpBB exploit that we patched back in December. Unfortunately, the solution provided by the phpBB team didn't do anything to prevent the phpBB install in question from being overloaded with the requests. We've blocked the attacking computer in question and modified phpBB to essentially ignore such requests. Thanks to Jorj and Fabrizio for rescuing our server from the abyss. Smile

You know, this makes me wonder at what point the issue of personal liability comes into question - if my computer is attacking your computer, even if I don't know it, shouldn't I be liable for that in some way? If my dog attacks someone, I'm held responsible. If a piece of my roof falls off and kills someone, I'm responsible. I wonder if we'll start to see some legal action against users, or against software companies, related to issues like this?
Back to top
View user's profile Send private message Visit poster's website
Mike Temporale
Managing Editor


Joined: 07 Jul 2003
Posts: 8577
Location: Toronto, Canada

PostPosted: Mon Jan 24, 2005 12:47 pm    Post subject: Re: Server Attack Foiled Reply with quote

Jason Dunn wrote:
Thanks to Jorj and Fabrizio for rescuing our server from the abyss. Smile


:werenotworthy:

Jason Dunn wrote:
You know, this makes me wonder at what point the issue of personal liability comes into question - if my computer is attacking your computer, even if I don't know it, shouldn't I be liable for that in some way?


Interesting question... At some point, sure. I wonder what it will take before we start to see companies take this kind of action. I think, you would have to prove that the owner neglected to preform routine security updates.
_________________
"I have no special talents, I am only passionately curious" - Albert Einstein
Back to top
View user's profile Send private message Visit poster's website
spunkkat
Smartphone Pupil


Joined: 14 Jan 2005
Posts: 16

PostPosted: Mon Jan 24, 2005 3:08 pm    Post subject: personal liability Reply with quote

I think it should be a law now, if we don't start to police people who do not uphold their civic & web duty to have anti-virus & such... why should "we" pay for someone else's lack of caring? P.S. Tanx for reactivating my account so fast!!!
Back to top
View user's profile Send private message
Jerry Raia
Contributing Editor


Joined: 07 Jul 2003
Posts: 4532
Location: Los Angeles

PostPosted: Tue Jan 25, 2005 1:59 am    Post subject: Re: Server Attack Foiled Reply with quote

Mike Temporale wrote:
Jason Dunn wrote:
Thanks to Jorj and Fabrizio for rescuing our server from the abyss. Smile


:werenotworthy:

Jason Dunn wrote:
You know, this makes me wonder at what point the issue of personal liability comes into question - if my computer is attacking your computer, even if I don't know it, shouldn't I be liable for that in some way?


Interesting question... At some point, sure. I wonder what it will take before we start to see companies take this kind of action. I think, you would have to prove that the owner neglected to preform routine security updates.


Don't know how one could prove that without being invasive. One of the great things about the internet is the freedom of it. Along with that comes the abuse. If you tighten up too much on the abuse you may strangle the freedom too.
_________________

[3125] [BlackJack] [8525]
Back to top
View user's profile Send private message Visit poster's website
jimfee
Smartphone Ponderer


Joined: 08 Dec 2004
Posts: 52
Location: Lansdale, PA

PostPosted: Sun Apr 17, 2005 3:57 am    Post subject: Reply with quote

You will always have a section of lazy slobs that allow themselves to be co-opted for this type of attack. The only way to ensure they are not successful is to have a security team in place, which you seem to have. The only way to have a security team in place is to provide them some kind of security in return. How about a donation link, I don’t want this resource to go away. Some of my favorite boards have gone the way of "this domain is available for sale" lately.
Back to top
View user's profile Send private message
Display posts from previous:   
Post new topic   Reply to topic    Smartphone Thoughts Forum Index -> UPDATE All times are GMT - 6 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You can vote in polls in this forum


Powered by phpBB © 2001, 2005 phpBB Group
Copyright 2004 Jason Dunn | Web design & development by Fabrizio Fiandanese