Article | REF: H5833 V1

System attacks - Take control of the stronghold

Author: Laurent LEVIER

Publication date: April 10, 2006

You do not have access to this resource.
Click here to request your free trial access!

Already subscribed? Log in!


Overview

Français

Read this article from a comprehensive knowledge base, updated and supplemented with articles reviewed by scientific committees.

Read the article

AUTHOR

  • Laurent LEVIER: Certified Information Systems Security Professional (CISSP) - Certified Information Security Manager (CISM) - Internal Network Security Officer, Equant Télécommunications

 INTRODUCTION

We have seen in the and that it is possible for an ill-intentioned person to map a network, even if it is protected by security equipment, but also, while remaining at a distance, to harm this network by, for example, altering its routing functions, deceiving some of the equipment it hosts by usurping IP addresses and many other techniques.

We also discovered that machines placed on remote networks could themselves fall prey to the hacker, either to access the information they contain, or to use them as a "rebound" platform to gain access to other equipment, such as the firewall. from the network it protects, or a secondary system in a three-tier architecture, for example.

So far, the hacker has only worked on level 3 of the OSI model of the TCP/IP protocol. While he has discovered the existence of listening network services, he is still unsure whether he can use a particular port to carry out his attack. He's still missing one piece of information: which is the most interesting weak point?

Here, we'll look at the concept of a weakness, and the consequences it can have for a hacker, and vice versa for the victim. Of course, assessing the presence of a particular weakness requires us to consider not only the network layer, but also the higher layers which offer more possibilities.

...

Acronyms and abbreviations

You do not have access to this resource.

Exclusive to subscribers. 97% yet to be discovered!

You do not have access to this resource.
Click here to request your free trial access!

Already subscribed? Log in!


The Ultimate Scientific and Technical Reference

A Comprehensive Knowledge Base, with over 1,200 authors and 100 scientific advisors
+ More than 10,000 articles and 1,000 how-to sheets, over 800 new or updated articles every year
From design to prototyping, right through to industrialization, the reference for securing the development of your industrial projects

This article is included in

Security of information systems

This offer includes:

Knowledge Base

Updated and enriched with articles validated by our scientific committees

Services

A set of exclusive tools to complement the resources

Practical Path

Operational and didactic, to guarantee the acquisition of transversal skills

Doc & Quiz

Interactive articles with quizzes, for constructive reading

Subscribe now!

Ongoing reading
System attacks