Fortifying Your Firewalls

Monday, 5 August 2002, 10:32 AM EST

When people permit me to attach my notebook to their networks, I'm always polite. I don't scan, although I might run a sniffer to make a point during a demonstration. What impresses me the most when visiting another organization's network is a firewall configuration that prevents me from using Secure Shell (SSH) to visit my own network.

Most people view firewalls as devices charged with keeping attackers outside. Network and security administrators configure firewalls to block scanning, attacks, and other hostile activity from external networks, while permitting only restricted access to designated internal servers. But with just a little more work, those same firewalls can easily prevent additional attacks from succeeding - all by blocking arbitrary external accesses. For some servers, firewalls that block all outgoing connections will slow the spread of worms and even prevent an attack from succeeding.

[ Read more ]




Spotlight

Compromised cPanel "Account Suspended" pages redirect to exploit kit

The code redirects visitors to another URL where the Fiesta exploit kit is hosted, which then tries to detect and exploit several vulnerabilities in various software. If it succeeds, the visitors are saddled with a banking Trojan.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  
DON'T
MISS

Fri, Feb 27th
    COPYRIGHT 1998-2015 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //