NIST Releases Guide to Cyber Attacks
treerex writes "NIST (the US National Institute of Standards and Technology) has just released a 148 page report entitled Computer Security Incident Handling Guide (PDF). It covers the gamut, from setting up a response team to dealing with specific types of attacks: DoS, trojans, worms, malicious code, and unauthorized access. While written by a team from NIST and the contractor Booz-Allen Hamilton (BAH), they appear to have taken input from CERT and luminaries like Spafford. It is an interesting read."
They also have a 1-800 number.
Thank you for calling the US National Institute of Standards and Technology Security Hotline.
Please say "HOLA" now if you espanol...
Otherwise please select one of the following selections dealing with your security problem.
Press 1 if you have suffered a DOS attack
Press 2 if your network has been infected with a worm
Press 3 if your site is being slashdotted
Press 4 if 13 year olds have defaced your web site
Press 5 if you are running windows as your server
Press 666 if you are a missle silo control room and have realized that someone has gained root or administrative access on your control system
Have a nice day.
Guide for Sysadmins: Upon learning that your systems have been penetrated, proper incident response is as follows:
Microsoft Windows is, fittingly, the official Desktop OS of Olig
...what to do in case of a Slashdotting?
Sheesh, evil *and* a jerk. -- Jade
Whats the standard response to republicans peeping at your internal files?
Drinking habits can be dangerous. You can choke on the cloth and the nuns will wonder where their clothes are.