home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers

Home


N E W S



Honeypot Project Finds Unpatched Linux PCs Stay Secure Online For Months



Study says the average unpatched Linux system survives for months on the Internet before being hacked. Another report sasy Windows PCs last just minutes.
- By Gregg Keizer Courtesy of TechWeb News

The average unpatched Linux system survives for months on the Internet before being hacked, a report recently issued by the Honeypot Project claims.

The life expectancy of Linux has lengthened dramatically since 2001 and 2002, the project said, from a mere 72 hours two and three years ago to an average of three months today.

The Latest Videos
Intel CEO Paul Otellini demonstrates and discusses the future of collaboration and talks about Intels business model, including how it approaches R&D. Intel CEO Paul Otellini demonstrates and discusses the future of collaboration and talks about Intels business model, including how it approaches R&D. Some of the most influential cloud players discuss the future challenges and opportunities in Cloud Computing on stage at the Web 2.0 Summit.
Intel CEO Paul Otellini demonstrates and discusses the future of collaboration and talks about Intels business model, including how it approaches R&D.
Honeypot Project is a non-profit that, as its name suggests, connects vulnerable systems to the Internet in the hope of drawing attacks so that they can be studied. To figure out the lifespan of a Linux system, the group set up a dozen "honeynets" -- the project's term for a system that hosts numerous virtual honeypot machines -- in eight countries, then tracked the time it took for those machines to be compromised.

"What's surprising is that even though threats and activity are reported as increasing, we see the life expectancy of Linux increasing against random attacks," said the group's report.

In comparison, unpatched Windows systems often are hacked within minutes of connecting to the Internet. Late last month, similar "honeypot" research done by AvanteGarde tallied the average survival time of several versions of Windows at just four minutes.

Although Honeypot Project deployed several Windows-based honeypots, it felt they were too few in number to use in drawing conclusions. It did note that several of the Windows honeypots were compromised in mere minutes. A pair of honeypots in Brazil, however, were online several months before being eventually compromised by worms.

The group also spotted several interesting facts about Linux's lifespan.

The older the Linux distribution, the more likely it would be hacked, said the group, which attributed that to more secure default settings by newer versions, a trait Windows, particularly Windows XP SP2 and Windows Server 2003, shares with Linux.

And once a system had been compromised, it was more likely to be compromised again (and possibly again and again). One honeypot running Red Hat Linux, for example, was hacked 18 more times in just one month after its initial compromise. Again, that's not uncommon in the wider world of Windows, where previously-compromised PCs are often "updated" with the latest worm to take advantage of an even new vulnerability.

Although the data was somewhat of a surprise, particularly the huge increase in life expectancy even as Windows' continues to shrink, the group had several explanations for the results.

Default installations of Linux are, the report said, "becoming harder to compromise" thanks to changes such as fewer services automatically enabled and host based firewalls filtering inbound connections.

More important, however, is that hackers are now using tactics to target users, not the systems they work on. The best example is the flood of phishing attacks cranked out by criminals this year that need nothing more than an enticing e-mail message, an easily-duped consumer, and a bogus Web site to haul in dollars and steal identities.

The group also admitted the obvious, that Linux, by virtue of its small slice of the market, is a much less appealing target than Windows. "Based purely on economies of scale, attackers are targeting Win32 systems and their users, as this demographic represents the largest percentage of the installed base," the report stated.

"[You'd] expect that a greater threat could exist to Windows than Linux," the group concluded.

And from the results of this honeypot experiment, you'd be right.

















Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Download Today
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips

 


InformationWeek Business Technology Network
InformationWeekInformationWeek 500InformationWeek 500 ConferenceInformationWeek AnalyticsInformationWeek CIO
InformationWeek EventsInformationWeek ReportsInformationWeek MagazinebMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingNo JitterPlug Into The Cloud
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0 ConferenceMobile Business ExpoSoftware ConferenceCSI - Computer Security Institute
Black HatGTECEnergy CampMashup CampStartup Camp
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungLight Reading's Cable Digital NewsConstantinopleInternet EvolutionPyramid Research
Heavy ReadingLight Reading Live!Light Reading InsiderEthernet ExpoOptical ExpoTeleco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems & TechnologyInsurance & TechnologyWall Street & TechnologyAccelerating Wall StreetBank Systems & Technology Executive SummitBuyside Trading SummitInsurance & Technology Executive Summit
space
Microsoft Technology Network
MSDN MagazineTechNetThe Architecture Journal
space


App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2008  United Business Media LLC  |  Privacy Statement  |  Terms of Service  |  Your California Privacy Rights