denial of service
One of the most common attacks on insecure e-commerce systems comes in the form of denial of service attacks. Denial of service attacks can literally overload a server to the point where it can no longer function. This shutdown halts all business transactions that were taking place at the time, and does not allow for potential transactions. When a company's computers are clogged up by this form of attack they lose profits and business just as they would, had it been a traditional store that had to close its doors. There are a few different kinds of denial of service attacks. They all are malicious and are intended to harm the site they are aimed at. The most common form of this attack is known as a SYN Flood. SYN stands for synchronize sequence number. A SYN Flood starts when a malicious computer creates a TCP connection with the intended site. This connection originates as a request for information from that site's server and contains an ID that tells the server where to send that requested information. Normally the server would respond to the request by sending an acknowledgement back to the computer, which originally sent the ID. When the acknowledgement is confirmed the server then sends the reques
This form of attack incapacitates the company's server eliminating all potential business. When they send this information to the site, the server calls on the CGI script to communicate with that company's backend server to gather information to display on another web page through the use of HTML. Once the connection is hijacked the attacker can also delete essential files or introduce malicious code causing the system to crash. This GGI script can also store the data the user enters, in the company's database. This happens when a hacker or a disgruntled employee introduces a program or a virus into the computer system. This is one of the more primitive forms of denial of service attack, however it remains to be effective for the malicious individual. They are just like any other program except they are embedded into web pages. PING stands for packet Internet groper and what it does is checks whether a server is working or not and also how fast that server responds. These are usually replaced or eliminated but they can be anywhere on a server and are hard to find and maintain. An example of this is when a web page has some form of data entry box on it that the user enters information into. TCP Connection Hijacking TCP connection Hijacking occurs when a computer comes between two others. The server then sends back a response, which tells that computer that it is running, and how fast the request was processed and sent back. What happens is a computer sends out a request to a server to be responded to. This form of denial of service attack is becoming obsolete with the technological advances and security measures being implemented in the newer computer systems. This can be just about any of the above attacks however it happens from somewhere other than where the hacker is.
Common topics in this essay:
PING PING,
Hijacking TCP,
SYN Flood,
Service Attacks,
Controls Active-X,
Programs Sniffer,
Flood PING,
Cyber Vandalism,
Script CGI,
Overflow Buffer,
denial service,
form denial,
service attack,
denial service attack,
form denial service,
form attack,
denial service attacks,
service attacks,
web page,
syn flood,
tcp connection,
company's server,
cyber vandalism,
intruding party pretty,
critical private information,
|