Scraping, Denial of Service, and Brute Force Attacks! Oh My!: Identifying and Controlling Automated Clients
White Papers Breach Security's product line is uniquely positioned to help organizations address these automated types of attacks. Anti-Automation defenses are critical in today's web application security landscape.
[October 6, 2009, 1:22]
A New IP Traceback System Against Distributed Denial-of-Service Attacks
White Papers On most Denial-of-Service (DoS) attacks, packets with spoofed source addresses are employed in order to disguise the true origin of the attacker. A defense strategy is to trace attack packets back to their actual source in order to make the...
[June 24, 2009, 16:02]
Denial of service attacks are legal 'grey area'
News A prosecution witness in the trial of a teenager accused of launching an email bomb attack admitted that the legality of denial-of-service (DoS) attacks caused by a flood of email is a legal grey area that IT professionals want clarified.
[November 2, 2005, 11:20]
US, South Korea site attacks traced back to UK
News The denial-of-service attacks launched on websites in South Korea and the US earlier this month appear to have come from a master server in the UK, according to security researchers in Vietnam. The master server controls all the eight command and...
[July 15, 2009, 8:29]
Defense Against Low-Rate TCP-Targeted Denial-of-Service Attacks
White Papers Low-rate TCP-targeted Denial-of-Service (DoS) attacks aim at the fact that most operating systems in use today have a common base TCP Retransmission Timeout (RTO) of 1 sec. This paper proposes randomization on TCP RTO as defense against such attacks.
[June 24, 2009, 16:02]
Targeted hacking attacks tipped to rise
News The new breed of cybercriminals who develop sophisticated targeted attacks against specific businesses will continue to be a serious threat in 2006, MessageLabs warned this week. In its 2005 Global Security Report, MessageLabs reported that it saw...
[December 20, 2005, 12:15]
Proactive Server Roaming for Mitigating Denial-of-Service Attacks
White Papers This paper proposes a framework based on proactive server roaming to mitigate the effects of Denial-of-Service (DoS) attacks. The active server proactively changes its location within a pool of servers to defend against unpredictable and...
[June 30, 2009, 1:19]
Facebook enabling tailored email attacks
News Security experts warned this week of two separate email attacks launched on Monday that take aim at specific individuals within corporations. Although it is likely the two attacks are related, Wood said, their attachments and delivery mechanisms...
[November 21, 2007, 11:24]
MessageLabs warns of customised email attacks
News Two highly targeted email attacks on individuals at corporations cropped up on Monday. MessageLabs security analyst Paul Wood said it is likely the two attacks are related, but their attachments and delivery mechanisms varied somewhat.
[November 21, 2007, 12:31]
Relay Attacks on Bluetooth Authentication and Solutions
White Papers This paper describes relay attacks on Bluetooth authentication protocol. The aim of these attacks is impersonation. The attacker does not need to guess or obtain a common secret known to both victims in order to set up these attacks, merely to...
[March 16, 2009, 3:26]
Impeding Attrition Attacks in P2P Systems
White Papers P2P systems are exposed to an unusually broad range of attacks. These include a spectrum of denial-of-service or attrition attacks from low-level packet flooding to high-level abuse of the peer communication protocol.
[April 5, 2006, 0:00]
Best Practices for Preventing DoS/Denial of Service Attacks
White Papers Many corporate websites have suffered from illegal denial-of-service (DoS) attacks more than once. The companies that learn how to turn these experiences to their advantage go a long way to ensuring it doesn't happen again.
[December 13, 2006, 8:36]
MSDN Webcast: Application-Level Attacks: Phishing and Session Hijacking (Level 300)
White Papers The webcast also gives detailed information into the current methods of executing Phishing attacks, the ways a company can defend against phishing attacks and responses to an ongoing attack. This webcast provides in-depth demonstrations of a...
[June 9, 2006, 0:00]
Mitigating Man-in-the-Middle and Trojan Attacks: Best Practices for Combating Emerging Threats With Layered Security
White Papers As financial institutions across the globe continue to deploy strong, multi-factor authentication, fraudsters are simultaneously developing more sophisticated ways to launch attacks and to circumvent established security measures such as One-Time...
[June 30, 2009, 1:19]
Browser-based attacks increase as viruses decrease
News As the threat to IT operations by viruses and worms declines, browser-based attacks are increasing, according to a technology trade organisation. Browser-based attacks often take advantage of security flaws in Web browsers and other components of...
[June 15, 2005, 10:45]
On the Hardness of Minimum Cost Blocking Attacks on Multi-Path Wireless Routing Protocols
White Papers This paper demonstrates the provable superiority of multi-path routing protocols over other conventional protocols against blocking, node-isolation and network-partitioning type-attacks in Wireless Mesh Networks (WMNs) by emulating adversarial...
[August 29, 2009, 1:23]
Microsoft besieged by zero-day attacks
News Microsoft issued a rare, out-of-cycle Windows patch on Tuesday that fixed one flaw, but attacks through other known, yet-to-be-plugged holes continue. Microsoft on Wednesday warned of "limited zero-day attacks" that exploit a new flaw in PowerPoint...
[September 28, 2006, 9:20]
Protecting Multinational Networks Against Attacks With Solutions From Symantec
White Papers By standardizing on comprehensive Symantec network security and data protection solutions, S&B Industrial Minerals S.A.is benefiting from high-speed, network intrusion detection, real-time analysis and correlation, and proactive prevention and...
[September 5, 2006, 0:00]
On the Impact of GSM Encryption and Man-in-the-Middle Attacks on the Security of Interoperating GSM/UMTS Networks
White Papers This paper discusses the impact of GSM encryption attacks, that recover the encryption key, and the man-in-the-middle attack on the security of networks, which employ UMTS and GSM base stations simultaneously.
[November 15, 2005, 23:00]
Baffling hack attacks on W2K server
News The Redmond giant still isn't really sure whether the cause of these attacks is a new vulnerability or just poor configuration, but it's leaning toward the latter. All the successful attacks so far have been against servers running Windows 2000...
[September 23, 2002, 19:42]



