Penetration Testing mailing list archives

Re: Looking for help against Chinese Hacking Team


From: "Adriel T. Desautels" <ad_lists () netragard com>
Date: Tue, 16 Dec 2008 16:19:21 -0500

Don't leave Distributed Metastasis out of the loop...


On Dec 15, 2008, at 11:43 PM, George M. Garner Jr. wrote:

Harvey,

Out of curiosity, how do you know that your attackers are Chinese, and not
some pimple-faced kid living next door to you?

Once someone get's in there are a number of ways to persist beyond a
reformat and reinstall. It is pretty much standard practice today for a rootkit to copy itself to your backup, to removable media, to accessible file shares and other storage. Is it possible that your "Chinese" hackers
keep getting in because they never left?

Regards,

George.


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------


Adriel T. Desautels
ad_lists () netragard com




------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------


Current thread: