NEWS NAI's US servers were bombarded in a Denial of Service (DoS) attack after malicious software was posted anonymously on a security mailing list with 85,000 members, called BugTraq. Chris McNab, network security analyst at MIS Corporate Defense Solutions, said the BugTraq monitor would have been hard pushed to spot the exploit. "The hacker had spent a lot of time, effort and resources on this," he said. McNab claimed NAI's network was up and down intermittently overnight. However, Douglas Hurd, business development manager for Northern Europe at NAI, said the company's servers stood up well to the attack. "NAI were aware as soon as it happened. Within 90 minutes we were able to do something to mitigate the attack," he said. The BugTraq list is used by security professionals to share information, publish exploits and post fixes. Postings are monitored for malicious content, but the DoS software passed through unnoticed, hidden in the shellcode. The hacker software was hidden in a posting that claimed to be the first exploit of the BIND vulnerabilities in the wild. Security experts have been waiting for the code to be published since last Friday when NAI announced it had a copy in its US labs. "This was probably a revenge attack for telling the world about the vulnerability," said McNab. NAI's Hurd said the company will not take action against BugTraq. "We're obviously very disappointed. But we can't fault them for being imperfect," he said, "BugTraq plays a valuable role." He added that the damage caused to NAI was minimal. "It's never good news to be attacked, but its proof that NAI's defences worked this time."
Security giant hit by hacker attack
Security vendor Network Associates (NAI) came under attack from hackers last night just days after it issued an advisory on security flaws in DNS software BIND. Although the network struggled, it managed to weather the storm.
Post your comment
In order to post a comment you need to be registered and logged in.
You can also log in with Facebook. Log in or create your silicon.com account below
Get silicon.com's daily newsletter
-

Enter your email to register
Featured white papers
-
CIO challenges: Bringing your iPad to work
The arrival of personal technology in the office is a challenge for all organisations. The technology is here, but not...
-
2012 Olympics: Is your business prepared?
Athletes prepare for all kinds of conditions and problems in competition. With the London-hosted Olympics fast...
-
10 safety tips for business in 2012
Remember 2011? It seems like so long ago, with the speed of IT moving faster all the time. Data keeps growing, social...
Keep in touch with silicon.com
-
Connect with silicon.com on Facebook
Discuss the news of the day with the silicon.com team
-
Follow silicon.com on Twitter
Get regular updates from the silicon.com editors
-
Join the silicon.com LinkedIn networking group
Network with your peers and share expertise
Latest jobs
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
-
Managing Director - NBA3045
Managing Director – Cash and Transit Salary: £95K - £140K Basic, Bonus, Pension Scheme, Family...
silicon.com newsletters
-
Stay up to date with silicon.com newsletters
Keep up with the latest news and analysis from silicon.com with our free email newsletters




