2000: The year of the killer hackers

By Scott Berinato, eWEEK
19 December 2000 11:13 AM
Tags: hacking, worm, denial of service, ddos, cracked, email, year, sopho
Year 2000 is ending as it began, with a DDoS attack threatening a large part of the Internet and failing security efforts fueling IT fears.

The latest distributed denial-of-service attempt was broken up last week in Denmark, where hackers took control of at least 50 zombie servers and were preparing an assault on that country's systems. Authorities arrested a 17-year-old suspected of being connected to the attempt, which was broken up by the Danish section of the Computer Emergency Response Team, according to a report in the Danish newspaper Ingeniøren.

It's only one of an alarming number of news reports last week that demonstrate that the fight for online security and privacy has woefully regressed in every area except oneâ€"awareness. Other bad news from last week:

  • Creditcards.com was hacked, and 55,000 card numbers were held hostage for US$100,000. When the extortion attempt failed, the hacker posted the card numbers on the Web. The company has since put up a Web site where merchants and customers can check for fraudulent transactions.

  • At the University of Washington Medical Center, thousands of medical records for heart patients, which included names and Social Security numbers, were accessed. Officials first denied, then confirmed the hack.

  • Experts from @stake warned that America Online's AOL Instant Messenger is harboring serious security flaws.

More significant, most experts concur that things will only get worse next year.

"The scariest part to me is there's not enough qualified security talent out there," said a security administrator at a major Midwestern mortgage bank. "That's why we're losing ground. I built my infrastructure and many of the programs methodically. But I regularly do security audits, and it's getting to the point they can't even address our security because they don't understand it."

The situation is worse than most people think, said Chris Rouland, director of Internet Security Systems's X-Force security advisory team, in Atlanta. "There are a high level of DDoS agents out there right now, on the order of tens of thousands of servers in zombie configuration," said Rouland, who also said he sees at least one data hostage situation per month. "I've had high-level talks with the government. I can tell you there's concern."

Indeed, the FBI has been vocal on the data security front, taking efforts to warn corporations, universities and consumers of higher levels of hack attempts and virus launches around the holidays.

Hackers thrive this time of year because they can prey on the large number of e-mail greeting attachmentsâ€"usually accompanied by higher levels of seasonal trust and goodwillâ€"to launch viruses and because of the high level of online shopping.

Advertisement

Talkback 0 comments

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • David Braue Can not-so-smart meters help the NBN?
    It was interesting to witness Conroy's recent enthusiasm to spruik the NBN's role in supporting the Smart Grid, Smart City initiative. What a pity that Conroy hadn't yet seen the damning report from the Victorian auditor-general about that state's smart-meter roll-out.
  • Array Can the Telco Reform Act be win-win?
    In the second of our two programs looking at the Senate Inquiry into the Telecommunications Legislation Amendment Bill, we hear from shareholders, bureaucrats and industry groups.
  • Array Has New Zealand's smiling assassin delivered?
    One year into its tenure, how has the new New Zealand Government performed on issues of technology and telecommunications?
  • More blogs »

Tags

Back to top

Featured