Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
November 19, 2008, 06:11:17 AM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
212409
Posts
24553
Topics
57742
Members
Latest Member:
loooove
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
General Category
Which Product do you want Comodo to develop next?
Extreme paranoia Security and Attack vector theory
« previous
next »
Pages:
[
1
]
Author
Topic: Extreme paranoia Security and Attack vector theory (Read 886 times)
tetsuo55
Comodo Family Member
Offline
Posts: 90
Tweaking windows for Security,Stability and Speed
Extreme paranoia Security and Attack vector theory
«
on:
August 29, 2008, 08:09:56 AM »
Maybe not really an application request per-se
But comodo could probably adjust an existing one or cook one up
Extreme paranoia mode ON.
In This text i'm going to explain a theory i cooked up. It's the standard i use to decide of an application does or does not increase security on my system.
The theory is based on extreme paranoia and an assumption that is statistically incorrect. Lucky chaos theory backs me up on this one. It only takes 1 of these exploits to be true to validate what i am saying.
First some explentaions:
BUG: An unintended behaviour in a design(hard or software)
EXPLOIT: A BUG that can be used\abused by an attacker
For this theory i am going to assume that EVERY BUG is an EXPLOIT and that every hard- and soft-ware is full of BUGs.
ATTACK: A seqeuence of 1's and 0's (or electrical fluctuatios)that triggers the BUG.
VECTOR: The "entrance" the attack uses to enter the system.
--------------
Hardware VECTOR's:
All ports on the system, PS2, usb, VGA and so forth. Even ports that only allow outgoing data can be ATTACKed by shorting the cuircut.
Software VECTOR's
Os, drivers, applications, network traffic.
One of my personal favorites is malformed TCP/IP traffic or HTML.
----------------
How to protect?
-The hardware should be more secure, not accepting signals from anything and anyone, bugs should be fixed with high priority.
-All ports should be physically unreachable for unauthorised users(but it should be very easy for the authorised users)
-The protection software running on the system(could be the os itself) should be guarding against data-streams from all ports (so the protection software should also be protecting bluetooth, infrared, serial port, vga, dvi and so forth)
-The protection software should be monitoring all network data streams.
Basically the protection software should work as a PROXY between the entire system.
*Data starts to come in.
*Protection software starts buffering the data(or not) and asks(or knows) to allow or dissalow
*Buffered data gets scanned for any attack 1' and 0's (this requires massive knowlegde of exploits and malware signatures)
*A permanent allow rule can be made which bypasses the scan (handy for things like monitors)
It's up to the hardware manufactures to increase the security of hardware connections. 1 example is HDCP(its basically a huge pain the ass)
Logged
hbobeck
Comodo's Hero
Offline
Posts: 205
Re: Extreme paranoia Security and Attack vector theory
«
Reply #1 on:
August 29, 2008, 08:14:16 AM »
Hi Tetsuo,
thanks for your post!
very interesting indeed. Would be nice to get some feedback from the devs on how/if this could be implemented...
Harry
Logged
gibran
Forum Member
Global Moderator
Comodo's Hero
Offline
Posts: 4145
Sometimes words are meaningless indeed...
Re: Extreme paranoia Security and Attack vector theory
«
Reply #2 on:
August 29, 2008, 08:47:41 AM »
Someone has already answered and the answer is Trusted Computing.
Trusted computing may not be a good solution.
http://en.wikipedia.org/wiki/Trusted_Computing#Criticism_of_Trusted_Computing
Logged
Read First
~
FAQs
~
Forum Policy
~
CFP3 Configuration Report
THE CORE RULES OF NETIQUETTE
tetsuo55
Comodo Family Member
Offline
Posts: 90
Tweaking windows for Security,Stability and Speed
Re: Extreme paranoia Security and Attack vector theory
«
Reply #3 on:
August 29, 2008, 08:53:02 AM »
Quote from: gibran on August 29, 2008, 08:47:41 AM
Someone has already answered and the answer is Trusted Computing.
Trusted computing may not be a good solution.
http://en.wikipedia.org/wiki/Trusted_Computing#Criticism_of_Trusted_Computing
That's not a real solution, it requires completely new systems and software to work, any backwards compatibility would be fully exploitable.
«
Last Edit: August 29, 2008, 08:54:38 AM by tetsuo55
»
Logged
gibran
Forum Member
Global Moderator
Comodo's Hero
Offline
Posts: 4145
Sometimes words are meaningless indeed...
Re: Extreme paranoia Security and Attack vector theory
«
Reply #4 on:
August 29, 2008, 09:01:00 AM »
Quote from: tetsuo55 on August 29, 2008, 08:53:02 AM
That's not a real solution, it requires completely new systems and software to work, any backwards compatibility would be fully exploitable.
Protectling all datastreams require also new hardware and backward compatibility is obvoiusly a risk.
I guess that this is a problem whose solution looks more dangerous than the originary problem itself.
«
Last Edit: August 29, 2008, 09:04:39 AM by gibran
»
Logged
Read First
~
FAQs
~
Forum Policy
~
CFP3 Configuration Report
THE CORE RULES OF NETIQUETTE
tetsuo55
Comodo Family Member
Offline
Posts: 90
Tweaking windows for Security,Stability and Speed
Re: Extreme paranoia Security and Attack vector theory
«
Reply #5 on:
August 29, 2008, 09:08:39 AM »
Yeah if you use new hardware and software and completely forget backwards compatibility the problem will be greatly reduced(it will never go away as my theory states that everything has exploitable bugs so even the new system will)
You could even use secure virtualisation to create some backwards compatibility.
Still i hope someone will come up with an out-of-the-box solution that will work with legacy hardware and software
EDIT:
Quote from: gibran on August 29, 2008, 09:01:00 AM
I guess that this is a problem whose solution looks more dangerous than the originary problem itself.
Very well said
Logged
tetsuo55
Comodo Family Member
Offline
Posts: 90
Tweaking windows for Security,Stability and Speed
Re: Extreme paranoia Security and Attack vector theory
«
Reply #6 on:
August 31, 2008, 03:03:36 PM »
Okay i think i can make this a little easier for everyone
My proposition is:
Hard- and Soft-ware is full of BUGS, each of these bugs is an Exploit, for each Exploit there is an ATTACK that can reach the system through any Vector.
Think of the system(hard-+soft-ware) as a few story office building.
This building is under seige, all the many doors and windows have to be baricaded and guarded, same goes for the airco and phonelines/internet connection. All the interior walls are thin drywall sheets, due to the siege some of the people in the office might go nuts(or get persuaded to join the siegers). So the inner walls have to be fortified too.
(The system that provides this level of protection would possibly lead to an uber-stable system as a bonus)
Logged
Tags:
security
attack
Vector
exploit
paranoia
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
** New to the Comodo Forum? Start Here! **
-----------------------------
=> New Member Information
-----------------------------
Want to help Comodo?
-----------------------------
=> Help Spread the Word - Official Comodo banners and logos
=> How can you help Comodo? (Please we do need you!)
===> Help spread the word! (Please read and help)
===> Comodo website issues for submitting website problems only
=> Please tell us your views and Vote here!
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Which Product do you want Comodo to develop next?
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Desktop Security Products
-----------------------------
=> Comodo Firewall
===> Feedback/Comments/Announcements/News
===> Leak Testing/Attacks/Vulnerability Research
===> Help for v3
===> Help for v2
===> Frequently Asked Questions (FAQ) for Comodo firewall
===> Comodo Firewall Translations
===> Bug Reports
=> Comodo Internet Security - CIS
===> Overview - CIS
===> Help - CIS
=====> Anti Virus Help
=====> Firewall Help
=====> Defense+ Help
=====> Install / Setup / Configuration Help
===> FAQ - CIS
=====> Anti Virus FAQ
=====> Firewall FAQ
=====> Defense+ FAQ
=====> Install / Setup / Configuration FAQ
===> Feedback/Comments/Announcements/News - CIS
===> Guides - CIS
=====> Anti Virus Guides
=====> Firewall Guides
=====> Defense+ Guides
=====> Install / Setup / Configuration Guides
===> Wishlist - CIS
=====> Anti Virus Wishlist
=====> Firewall Wishlist
=====> Defense+ Wishlist
=====> GUI -Graphical User Interface - Wishlist
===> Bug Report - CIS
=====> Anti Virus Bugs
=====> Firewall Bugs
=====> Defense+ Bugs
=====> Other - General - GUI etc Bugs
=====> False Positive/Negative reporting - (Is this a malware that CIS has/not detected?)
===> Virus/Malware Removal Assistance
=> Comodo Anti-Viruspyware (CAVS)
===> Help for Comodo AntiVirus
===> FAQ for Comodo Anti-ViruSpyware
===> Feedback/Comments/Announcements/News about CAVS
=> Comodo BOClean Anti-Malware
===> Announcements
===> Comodo BOClean Anti-Malware FAQ
=> Comodo Instant Malware Analysis - Online (CIMA)
=> Comodo DiskShield
=> Comodo Disk Encryption
=> Comodo Secure Email (CSE) Product
===> Frequently Asked Questions (FAQ)
===> Feedback/Comments/Announcements/News about CSE
===> Bug Reports
===> Help for Comodo SecureEmail
=> Comodo Memory Firewall(Buffer Overflow Protection)
===> Help
===> Frequently Asked Questions (Comodo Memory Firewall)
===> Feedback/Comments/Announcements/News
=> Comodo TrustConnect - Securing the Wireless world!
=> Comodo SafeSurf and (Comodo's own toolbar)
=> Backup
===> FAQ for Comodo Backup
===> Help
=> Verification Engine (allows you to verify what you see on the Internet)
=> Comodo Vulnerability Analyzer
=> AntiSpam
=> i-Vault
=> Launch Pad
=> Trusttoolbar
-----------------------------
Desktop Utilities
-----------------------------
=> Comodo Registry Cleaner
-----------------------------
Enterprise Security
-----------------------------
=> Comodo Endpoint Security Manager
-----------------------------
Compliance
-----------------------------
=> PCI DSS Compliance
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> Computer Firewalls
=> Anti Virus/Malware Products/Other Security products
=> Free Virus/Spyware/Trojan/Malware Removal by Comodo Experts
=> HIPS (Host Intrusion Prevention Systems)
=> Anti Phishing solutions
=> Digital Certificates, Encryption and Digital Signing
=> General Security Questions and Comments (not product related)
-----------------------------
Free Services for End Users
-----------------------------
=> UserTrust - First Independent Website Rating - Empowering our users!
=> User Anywhere (Remote Access product)
=> Comodo Meet (Web Conferencing Product)
=> Hacker Guardian
=> Trustfax (free Trial) (online faxing)
-----------------------------
Free Products
-----------------------------
=> Link to Free Comodo Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Nederlands / Dutch
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> По-русски / Russian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> tiếng Việt / Vietnamese
-----------------------------
Digital Certificates
-----------------------------
=> Code Signing Certificate
=> Content Verification Certificate
=> Email Certificate
=> SSL Certificate
-----------------------------
Web Server Products
-----------------------------
=> Two Factor Authentication for Web Applications
=> Trustlogo
-----------------------------
Infrastructure Products
-----------------------------
=> ZTL
=> Trustix Enterprise Firewall
-----------------------------
Other
-----------------------------
=> Forum Policy Violation Board
Page created in 0.118 seconds with 18 queries.
Powered by SMF 1.1.7
|
SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by
7dana.com