|
|||||||||||
|
RE: A question for the list...
From: Mark Ng <laptopalias1-mark(at)informationintelligence.net>
Date: Tue May 20 2003 - 15:56:15 EDT
Are owners of long term compromised systems really "innocents"? If people have left systems compromised with worms that are attacking other networks and reports have been ignored for significant amounts of time, then surely the compromised party are guilty of negligence ? Personally, I think there are merits to some kind of "strikeback" system, but it has worse than dubious legality, and would definitely be abused (without a question). I think that ISP's need to make a more active role in this, and actively threaten to cut off customers whos compromised systems are attacking other networks on the internet. Perhaps rather than a strikeback system, something similar to ARIS could be used to send automated alerts to ISP's warning them that x number of their customers have the latest worm. In the event that ISP's are non-compliant, and don't deal with their infected customers, peering points could agree to enforce this upon ISP's. This is much preferable to doing things that may or may not be morally correct, but are a legal minefield. Thoughts ? Regards, Mark Ng (www.informationintelligence.net)
To get your FREE white paper visit us at: http://www.securityfocus.com/AirDefense-incidents Received on Wed May 21 12:27:30 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:02:05 EDT |
||||||||||
|
|||||||||||