bjbj Eric Wendelin Internet Server Security 9/10/02 Topics & Terms: Unix Basics Accounts File Permissions Installation File System Setup Standard Services BSD Randy Buffer Overflows Involves overwriting the execution stack to compromise the machine Kernel Recompilation & Security Re-doing the Kernel (the process manager and core of the OS) Intrusion Detection Box watching attacks and logging them (utilizes sniffing) Packet Filtering Monitoring traffic and only allowing certain packets Packet Sniffing Accessing information of a network packet before it arrives at it s destination. IP Spoofing Taking another IP address as your own Denial of Service Kill some useful service Root Kits Software left behind to keep a system open to a hacker Historical Exploits of Note Vulnerability Scanning Scanning a system for known vulnerabilities Honey Pot Looks compromise-able but then counter-attacks Tar Pit Computer that looks like it s being cracked but just takes up CPU cycles of the hacker Meteor Big Rock Post Mortem Figuring out what happened after a break-in urn:schemas-microsoft-com:office:smarttags date 2002 Month Year Eric Wendelin Eric Wendelin Normal Eric Wendelin Microsoft Word 10.0 Pimpin' Ain't EZ Inc. Eric Wendelin Title Microsoft Word Document MSWordDoc Word.Document.8