-
Damn skiddys
Does anyone know of a program that will log attacks,but won't block them?
There's some skiddy idiot that is trying to find a way past my security.He's been doing it for days,and it's getting on my nerves.My firewall has him logged,and I called his ISP.It seems to me they didn't do a damn thing,because the port scanning and other crap hasn't stopped.The plus side to this is he's trying to get into my hack box which I screw up every other day and have to reformat and reinstall my backups.What I want to do is lower my defenses a little,let him get in and do what he pleases,all the while I log what he's destroying/taking from my comp.With that info if his ISP doesn't do anything,I'll be able to have my lawyer force them to do something.
-
Damn skiddys
Does anyone know of a program that will log attacks,but won't block them?
There's some skiddy idiot that is trying to find a way past my security.He's been doing it for days,and it's getting on my nerves.My firewall has him logged,and I called his ISP.It seems to me they didn't do a damn thing,because the port scanning and other crap hasn't stopped.The plus side to this is he's trying to get into my hack box which I screw up every other day and have to reformat and reinstall my backups.What I want to do is lower my defenses a little,let him get in and do what he pleases,all the while I log what he's destroying/taking from my comp.With that info if his ISP doesn't do anything,I'll be able to have my lawyer force them to do something.
-
hmm
the free ware version of black ice does exactly that, well it did when i used it, try looking for that, itll log everything and warn you but wont stop them.
-
hmm
the free ware version of black ice does exactly that, well it did when i used it, try looking for that, itll log everything and warn you but wont stop them.
-
Can blackIce log keys to? I wouldn't know because I've never used it but anyways..... you could get a keyloger and track almost every keystroke the guy makes as soon as he gains root & maybe you can even learn what type of attacks the intruder may plan to do next & then use some of this info agianst the intruder in court.
-
Can blackIce log keys to? I wouldn't know because I've never used it but anyways..... you could get a keyloger and track almost every keystroke the guy makes as soon as he gains root & maybe you can even learn what type of attacks the intruder may plan to do next & then use some of this info agianst the intruder in court.
-
with tiny you can allow and log. Or set up snort to send an smp alert...tiny's easier
-
with tiny you can allow and log. Or set up snort to send an smp alert...tiny's easier
-
I think you have only to launch a good sniffer. Since all his actions will have to transit by your connection, you'll log all.
-
I think you have only to launch a good sniffer. Since all his actions will have to transit by your connection, you'll log all.
-
I just wanted to bring up a point that you might want to be careful about. If you are planning on prosecuting this individual, you need to be careful not to cross that line between enticement and entrapment. What you are talking about doing sounds like it is ethical and legal on your side. A honeypot, so to speak, is legal and can be used as a means of identifying and logging the actions of an attacker. Lowering your defenses to "entice" an attacker to that specific machine is perfectly legal. Should you trick that individual into mistakenly going to your machine and then logging that information, you have crossed the line and forfeit your ability to prosecute that individual. From what I am reading about what you are planning on doing, you are within the ethical and legal limits. Just be careful not to cross them. You could lose your ability to prosecute and possibly get yourself in trouble. I only bring this up because I do see a lot of this happen. Perfectly innocent people just trying to catch attackers that get a little zealous and screw themselves up. Something to think about.
-
I just wanted to bring up a point that you might want to be careful about. If you are planning on prosecuting this individual, you need to be careful not to cross that line between enticement and entrapment. What you are talking about doing sounds like it is ethical and legal on your side. A honeypot, so to speak, is legal and can be used as a means of identifying and logging the actions of an attacker. Lowering your defenses to "entice" an attacker to that specific machine is perfectly legal. Should you trick that individual into mistakenly going to your machine and then logging that information, you have crossed the line and forfeit your ability to prosecute that individual. From what I am reading about what you are planning on doing, you are within the ethical and legal limits. Just be careful not to cross them. You could lose your ability to prosecute and possibly get yourself in trouble. I only bring this up because I do see a lot of this happen. Perfectly innocent people just trying to catch attackers that get a little zealous and screw themselves up. Something to think about.