Wednesday, 25 July 2012

UTM computer network system to recover after the invaded




JOHOR BAHRU, January 19: - computer network system Universiti Teknologi Malaysia (UTM) function returns to normal after a distributed denial of service attack (Distributed Denial-of-Service (DDoS)) on 15 January.

Director of the Information and Communications Technology (CICT) Professor Dr Safaai Deris said the attack crippled computer networks around the UTM campus in Johor Bahru.

According to him, pengkodam successfully invade and hack into one of the servers in the Data Centre at CICT on January 14 last by using the internet protocol (IP) registered to an organization in the United States.

Analysis of server logs show pengkodam successfully upload some malicious code into a hidden envelope once successfully broke into the server.

DDoS attack is activated from the server on the next day, ie January 15, 2012 that has crippled all main switches in a computer network UTM.

Server has been continuously sending packet transmission control protocol (TCP) that cause false-switch Susi paralysis due to process too many false packets result in a disruption of the entire network at UTM.

To restore the computer network system, UTM to develop the settings on the main network switches that lasted for seven hours.

As preventive measures, UTM has taken some action to ensure that incidents do not recur in the future.

Among them are doing the safety audit process more fully, kept some poor server security level and use the application more effective monitoring of invasion.

In addition, log monitoring of this application will be analyzed regularly to ensure that the invasion will soon be controlled.

A police report was also made to enable the authorities conduct an investigation and subsequent prosecution is responsible for causing disruption to the UTM network.

For long-term measures, UTM will obtain ISO 27001 certification from SIRIM that will enhance the security data center and network in a more comprehensive computer can avoid other more concerted cyber attacks.

ISO27001 is the standard security requirements of information technology (Information technology - Security techniques - Information security management systems - Requirements).

sources : UTM

No comments:

Post a Comment