All the latest UK technology news, reviews and analysis

Hacker intrusion collusion creates 'perfect IDS'

by James Middleton, vnunet.com

30 Oct 2001

Be the first to comment

  • Tweet this

Three months after the infamous Def Con hacker fest back in July, a group of geeks have published data which they claim may prove to be the ultimate Intrusion Detection System (IDS) test bed.

Each year the Def Con meeting in Las Vegas hosts a 'Capture the Flag' contest. In this event some of the best hackers from around the world duke it out over a specially constructed network for 72 hours, hacking for the title. To 'capture the flag' a hacker must get root access on a well-secured central server.

But geek organisation the Shmoo Group diligently sniffed and logged every packet sent over the network for posterity, effectively recording in blow-by-blow detail how the best hackers on the underground get into secure networks.

This week after "numerous technical difficulties" the Shmoo Group has made the aptly named 'Capture the Capture the Flag' data publicly available for free.

"Since Def Con brings the best and brightest in the security community together, and Capture the Flag is the cutting edge of the underground, we figured there is great value in saving the packets for posterity," the group said.

But Shmoo explained that the idea wasn't to help security companies sell more IDS based on these signatures. "The end result is not better IDS and such," it said. "The end result should be a wakeup call for application developers to write more secure apps that don't need IDS in front of them."

So now is your chance to download "by far the most interesting, exploit ridden, 5.8Gb of intrusion collusion ever published. Free for the bandwidth endowed, this is the ultimate IDS test bed." It can be found here.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

35%

0%

11%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Business Readiness/ Change manager

As part of a major implementation of a new inventory...

Information/Data Architect - MDM - SOA

Information/Data Architect - MDM - Master Data Management...

Softwaren Developer - .Net/SQL Server

Code Red Associates (CRA) is a leading supplier of Permanent...

Senior Test Analyst, Quality Assurance, QA, To £47,000 + Benefits

A fantastic opportunity has arisen for an experienced...

To send to more than one email address, simply separate each address with a comma.