Newsflash

After the good job that we have done with this site in the past 2 months, we have decided to sell  onemileaway.com and all its content. At this moment the website produces several  unique visitors per month, and has an Alexa rank of 1,069,434 . The traffic is still increasing everyday due to the SEO-strategies we have applied. This is an excellent opportunity for everybody who would buy a site already launched.

The price is only 20.000$ and it is negotiable. Email us if you are interested. Thanks.

 
Warning: your firewall is not enough PDF Print E-mail
Written by cecco   
Sunday, 27 January 2008
People think that a good firewall alone is the best way to protect your PC when surfing over the internet. Althought a firewall is an essential first line of defence blocking threats coming from the outside internet world, it could also create a false sense of security. I will show you what a firewall can't do:
  • can't protect from trojan horses, malware software and malicious insiders. When you receive a malicious executable attachment with a hidden trojan horse inside, your PC becomes quickly compromised.
  • can't protect against connections that bypass it. A firewall permits you to surf over the internet, but if you visit a web pages with malicious javascript code inside your PC will be compromised.
  • can't protect from completely new threats. A bug in your firwall could become a backdoor for an outsider bad guy who wants to break in.
  • can't auto set up correctly. Firewall is a commercial of the shelf product, a generic software made for thousands of people, so it is not customized for your PC and it could be hard to manually configure it properly.


An intrusion detection system (IDS) could be a second line of defence, placed after the first line mentioned above. An intrusion is an attemp to compromise the availability, confidentiality and integrity of your PC. This is what an IDS can do:

  • check integrity of your system files for unexpected modification
  • check log files to recognize intrusion patterns signature
  • prevent denial of service attacks blocking the attacker's host machine
  • monitor listen port activity
  • real time network packets capture and analyse using sophisticated threshold crossing or pattern matching techniques

An example of an open source portable IDS is Snort , a network based lightweight software that inform you whenever an intrusion is detected. It uses anomaly detection system model. Simply speaking this model defines metrics and monitor them to detect abnormal system usage which could lead to an intrusion.

 

Last Updated ( Monday, 28 January 2008 )
 
Next >
RocketTheme Joomla Templates customized by onemileaway.com