Netcraft Jokes About SCO's Virus Fears
Elektroschock writes: "Through the media SCO Group sent the message that a virus writer that targets its website would be a Linux enthusiast. Netcraft has its own funny remarks in a dogfood article." Some of you might get a cackle out of the third solution.
I for one welcome our new "previously unknown Linux Thought Leader" overlord!
The bigotry of the nonbeliever is for me nearly as funny as the bigotry of the believer. - Albert Einstein
...and that makes me wonder if the editor only read that far. ;)
;) )
"Entire set of infected Windows machines is reached and either comes up running Debian or crashes stone dead trying. No denial of service attack occurs. SCO sends licence fee demands to owners of all the previously infected windows machines. They happily pay up and SCO splits the proceeds with Slashdot readers."
(And yes, I read the whole thing.
libertarianswag.com
From the article: Spend Saturday soaking up the totally awesome graphics on the Stealth bomber flight simulators, and then obliterate most of Utah, sco.com name servers and all, on Sunday morning hours before the DDoS is due to hit Slashdot. SCO Execs still laughing themselves helpless about the /. Effect when the bomb hits.
:-)
Hey now, not everybody in Utah is a SCO exec or a polygamyist. I suppose this is the toll that association takes however, even if that association is geographic as opposed to ideological, political or religious. Believe it or not, there are good things to come out of Utah, such as much of the technology responsible for computer graphics, some kickin' genetics research, some of the best skiing in the world, good beer, and last but not least, is the home of computational molecular phenotyping.
Visit Jonesblog and say hello.
Maybe the person who wrote the virus is trying to tackle the real virus - SCO's lawsuits.
Seriously, SCO's DOSing every Linux user's stress level...
Looking at their uptime stats, a DDoS wouldn't really make much difference.
Why not just put multiple A records on the sco domain, as to spread the load across multiple servers. Besides, there will be enough traffic to take down many, many sites. Here's a short list, in order of importance...
c omn ux.com
kernel.org (and its mirrors)
groklaw.net
ibm.com
redhat.com
suse.
novell.com
sourceforge.net
slashdot.org
li
apple.com
sco.org (When we're finished, we'll be all you can see)
I thought Netcraft kept tabs on what webservers were used on the Internet? But now they are a news site taking sides in the SCO vs Linux argument?
What happened?
Fact: *Santa Cruz Operations is dying.
The whole front page of SCO's website is dedictated to the virus. If you were running SCO you wouldn't have this problem, so why is it freatured on their website? Probably just fodder for the next lawsuit is my guess.
J.
Some cats swing, and others don't. Don't you be the kind that won't.
Congratulations to Mike Peterjohn.
Who in btw is a founder and one of the Netcraft executives. So dunno about the dogfood. I wish other company CTOs could post dogfood like that.
Baker's Law: Misery no longer loves company. Nowadays it insists on it
http://www.sigsegv.cx/
... the entire world starts to DDOS you, to see if an expected DDOS is taking place yet [huge grin :-] ... A company that monitors uptime starts a deathwatch on your site ... That same company publically ridicules you on their homepage :-)
Simon
Physicists get Hadrons!
PING www.sco.com (216.250.128.12) 56(84) bytes of data.
--- www.sco.com ping statistics ---
34 packets transmitted, 0 received, 100% packet loss, time 33048ms
Well, the bomb on Utah? Aren't they all Christians in Utah? So I leave it to the Lord to punish SCO. Eternal doom proposed.
No, but I'm sure Darl's already hard at work.
I asked him his thoughts about SCO's foolish crusade, and he said, "Hey, we would have been out of business in December if they didn't."
So I guess Solution Number 1 may be plausible for fiscal reasons also.
Search for: Liars And Thieves *** Sorry, but search returned no results. Try to compose less restrictive search query or check spelling. *** Obviously their search engine is already DDOS'd
I have been a user for about 10 years. This ends Feb 2014. The site's been ruined. I'm off. Dice, FU
Linux geeks reveal that they've secretly controlled satellites in order to build a "Death Star" out of existing space debris. (you think the hubble is busted? Ha! We just borrowed some parts 'cause we needed some lenses and a gyroscope).
This "Death Star" goes Independence Day on SCO Land with pinpoint accuracy -- McBride castrated before being zapped like an ant under a magnifying lens.
Sir Gates and the Knights of the Old Republicans wage war against Geekdom because of this weapon of mass destruction. They device a plan to send a Mac to the death star in order to introduce a virus.
Upon pitching the idea to Steve Jobs, the poor man laughs himself to death, leaving Gates and Ballmer (in their Matrix outfits) to have their tablet PC plugged into the Linux-powered "Laser" via Samba.
The XP Tablet-PC edition spreads like a cancer through the ext3 filesystem resulting in many "I Told You So" comments by Reiser.
Linus, finally sick of all these events, sheds his impartial nature and embraces his dark side. Finally teaches everything he knows to that bleach-blonde IBM Commercial kid and dubs him Darth Tux. Geeks around the world cede their control of the Death Star to Darth Tux, who shoots down both Washingtons and proceeds to carve his face onto Mt. Rushmore.
Darth Tux declared supreme leader, quoted as saying "Choice is good...as long as you choose Linux" Proceeds to create his own distro -- Slim Shady Linux.
Geeks install distro, wave their hands skyward in apathy, and enjoy the new era of computing.
Fascinating that they (=Netcraft) think that Slashdot is doing more damage to SCO than what Groklaw did.
bash$
http://www.sco.com/mydoom/
...
What long-term steps should I take to protect against future viruses?
3. Do not download any documents or programs from any Website that you do not know to be reputable
This is just their way of stopping people finding what GPL stuff they're still giving away, isn't it?
I'm scared of numbers that can't be written as a fraction. It's an irrational fear.
Mormons, actually. It's like Christ++.
The only thing necessary for the triumph of evil is for good men to do nothing. --Edmund Burke
Object-Oriented Religion?
This just in:
"D'Aloisio Marc observed some things about the DoS attack, and raised some preliminary questions:
-----
Has anyone seen the DOS against SCO actually happen?
I have the new critter in a test environment where we conducted a
preliminary and rudimentary functionality and threat analysis and the
only activity I can get it to perform related to www.sco.com is to
resolve the name. In fact, it seems very unhappy if it cannot resolve
www.sco.com. Once it can, it happily scans local files for anything
that can be construed (very loosely) as a domain and tries to resolve
mail servers based on these. In fact, right now it's trying to resolve
'mx.makewin.rsp'. "Makewin.rsp' is a file referenced in the help files
of my DigitalMars C++ compiler on a test machine, so it's not a very
smart worm. The worm also seems to like to increment the third octet of
the host IP by one and syn to port 25 of that address over and over and
over... I have played with the date, etc, but still no activity directed
toward www.sco.com. It did die after 12 February, but gladly
resurrected when the date was set back prior to that. "
From: http://www.math.org.il/newworm-digest1.txt
Solution 3 recommends redirecting the traffic to 'somone you don't like.' I'm not sure whether I should admit to this but I think you all will find it interesting.
On Tursday afternoon somone began trying to hack into an MS SQL Server that my company runs. They weren't able to get in, but their brute force method of attemting to access the 'sa' account estentially caused a DoS on the application. We got the guys IP address but his ISP doesn't seem very interested in helping out.
It just so happens that we KNOW that a number of users inside our network have contracted MyDOOM. It also just so happens that we have our own internal DNS servers. Jokingly, we mentioned to our Network Admin that he should redirect all the SCO traffic to this IP. You could see a little glimmer in his eye at the suggestion and he paused for a moment and said that was a very interesting idea and that he might just do that...
Anyway, glad to see that we're not the only ones with the idea.
Friends don't help friends install M$ junk.
Oh yeah. Back in the old days they used to have these whacky ideas about inheritance. It wasn't uncommon for children to have many parents.
"The words of the prophets are written on the Slashdot walls."
The original version of the worm had a bug that didn't perform any DDoS of SCO. After having bugs in the code pointed out to them by the ever willing Open Source Community and the Security Research Community, the authors of the worm have helpfully provided several updates that do actually perform the DDoS against both SCO and M$.
Apparently, the code does not perform a complete TCP handshake before trying again. It doesn't wait around for the first TCP SYN+ACK packet, it sends a TCP SYN packet every second. If, by chance, the SCO address responds with a SYN+ACK packet, then the worm sends the initial GET / HTTP/1.1\r\nHost: www.sco.com\r\n\r\n. Its difficult to tell from the decompiles if it even bothers to close the connection, or just abndons the local TCP stack to deal with closing the connection at some later time. In an internet simulator testbed, not providing SYN+ACK packets back to a worm infected microsoft machine, the TCP stack stops sending unbalanced SYN packets after 63 attempts. As a friend helpfully pointed out, you can increase this number by changing a registry setting in windoze.
I personally don't think the current management of SCO cares about their website, they certainly don't have any revenue producing features that need to be maintained. Most SCO clients rarely go to the SCO site for anything, since most maintenance is done by intermediaries like IBM Services Group, which have their own internal distribution of support and patches.
the AC
Hemos is like...sci-fi fans;he thinks technology is cool, but he hasn't bothered to understand the science it's based on