On Wed, 9 Feb 2000, lewst wrote:
> Merton Campbell Crockett <[EMAIL PROTECTED]> wrote:
>
> > Do you plan an "hardening" every system now that you've told everyone what
> > are the interesting systems?
>
> Hostnames don't provoke attacks.
Really? There has been a shift over the past 10 years to mass-scale probes
and attacks from the from the more focused "social engineering" attacks and
probes that we saw in the past.
If I read a press release and learn that your company is introducing a new
product based on a technology that I'm working on and the head of the
project team is John Smith, you can bet your booties I'm going to be
interested in systems named smithj.<domain>. Might have my intelligence
group launch a mass-scale probe just to hide the real, targeted probe of the
smithj system.
Merton Campbell Crockett
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]