27 June 2001
  Updated: 12:58 GMT
The Register Biting the hand that feeds IT
Search The Register
Advertisement
Domainbusters Newworld
 

Click to Compare Prices

Windows XP will make Internet unstable - top security expert
Posted: 31/05/2001 at 10:55 GMT

According to top security expert Steve Gibson, Windows XP threatens to make the Internet unstable as it will allow large numbers of people to launch uncontrollable denial-of-service attacks to whichever IP address they see fit.

Mr Gibson came across the flaw while doing an in-depth investigation into DoS attacks on his own site, grc.com. "In a fluke of laziness (or good judgement?) that has saved the Internet from untold levels of disaster," he wrote, "Microsoft's engineers never fully implemented the complete 'Unix Sockets' specification in any of the previous versions of Windows. (Windows 2000 has it.) As a consequence, Windows machines (compared to Unix machines) are blessedly limited in their ability to generate deliberately invalid Internet packets."

These invalid Internet packets are what malicious Internet users fire at sites from a range of computers. So many are aimed at a particular site that all the bandwidth is used up and so the site disappears from view for all other Internet users as they get no information to or from the site's server.

All Windows OSes until Windows 2000 and now Windows XP would not allow someone to "spoof" the source of such Internet packets. This means that a sysadmin can see where they are coming from and then block all data from that PC - freeing up bandwidth and letting others see the site. Spoof packets don't allow you to do that.

Why, if Windows 2000 and all machines running on Unix can already spoof packets, do we need worry about Windows XP allowing the same thing? Simple: Windows XP is a consumer OS and so will be taken up by a huge number of technically illiterate consumers. These are precisely the people that hackers will target due to their limited understanding of security issues. They will allow Trojans, Zombie and other types of malicious program on their PCs, they will remain unaware of them and they won't be able to remove it, even if they do discover them.

This means that the opportunity for hackers to control and direct others' computers as they wish will grow at an enormous rate as more and more people upgrade to Windows XP.

Steve Gibson writes in his piece: "When those insecure and maliciously potent Windows XP machines are mated to high-bandwidth Internet connections, we are going to experience an escalation of Internet terrorism the likes of which has never been seen before."

He calls on everyone to contact Microsoft senior execs and explain the potential problem, with the aim of removing this ability, possibly in the first service pack it knocks out. He's serious. ®

Related Story
Everything you wanted to know about DDoS attacks

Related Link
Steve Gibsons' DoS piece

Sections
Front Page
Hardware
Semiconductors
Software
Networks
Internet
Business
Security
Bootnotes
The Week
Contact the Reg 2
 
Download your Reg screensaver here
Broadband
e-business
Hardware Roundup
The Mac Channel
Games Industry
Channel Flannel
BOFH 2K+1: Whole Shebang
The Vulture Central Mailbag
About The Register

If you want daily updates on news, enter your email address below, then click the 'Join List' button.
Powered by ListBot

 
Join the Reg SETI group
 
Join Reg Cancerbusters

[.com £18|.uk £9|web hosting £25]