<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ClubHack &#187; Network</title>
	<atom:link href="http://www.clubhack.com/category/articles/network/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.clubhack.com</link>
	<description></description>
	<lastBuildDate>Mon, 02 Apr 2012 11:23:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Social Engineering – Myth &amp; Reality</title>
		<link>http://www.clubhack.com/social-engineering-%e2%80%93-myth-reality/</link>
		<comments>http://www.clubhack.com/social-engineering-%e2%80%93-myth-reality/#comments</comments>
		<pubDate>Thu, 22 Jul 2010 16:43:55 +0000</pubDate>
		<dc:creator>VishalK™</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[Network]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=241</guid>
		<description><![CDATA[Please note this article is for educational purpose only. What be your reaction if you get a mail in your corporate Inbox with from field as “HR Helpdesk” (assuming that’s how HR mail appears in your organization) with subject as “Best Employee Bonus of Rs. 1,50,000”? The mail reads that you have been awarded the [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><strong>Please note this article is for educational purpose only. </strong></p>
<p>What be your reaction if you get a mail in your corporate Inbox with from field as “HR Helpdesk” (assuming that’s how HR mail appears in your organization) with subject as “Best Employee Bonus of Rs. 1,50,000”? The mail reads that you have been awarded the bonus because of your hard work, dedication etc. All you need to do is reply with some of your official &amp; personal details and the bonus is yours. If I were you I would jump on it and reply in matter of 30 seconds.</p>
<p>However, what you would have failed to notice is that the email ID in reply field would not be one of your HR’s corporate email ID’s but some malicious unknown email ID on the public domain. This is what we called Social Engineering.</p>
<p>Social Engineering is a term associated with attacker’s abilities to manipulate the natural human tendency of trust leading to malicious activities like unauthorized access, loss of confidential details, phishing etc. It’s actually an art of luring people in getting them to do what you desire. A child emotional pursuing his parents to buy her a toy, a sales person convincing the customer to buy his products or a phishing attack are all examples of Social Engineering.</p>
<p><strong><em>Social Engineering can be categorized as Physical &amp; Physiological. </em></strong></p>
<p>1        <strong>Physical</strong> – In this case an attacker attempts to circumvent physical security controls.</p>
<p>Amongst many, some of the examples dealing with Physical Social Engineering are:</p>
<ul>
<li>Bypassing the physical security checks and gaining unauthorized access to physical premises</li>
<li>As a visitor entering the cabin of a Top level executive in her / his absence</li>
<li>Impersonating as a courier agent and dropping off an unchecked parcel to a C-Suite executive’s cabin.</li>
<li>Entering restricted areas like data center and gain unauthorized access to critical details like network setup</li>
<li>Tailgating thru main entrance and other entry / exit points (Fire exits, smoking zones etc.)</li>
<li>Impersonating as a government official / person belonging to an authorized department (Electricity Board, Fire Department etc.) and conducting a site visit to gain critical information related to the facility</li>
</ul>
<p>2        <strong>Psychological</strong> – In this case attacker plays with victims trust basically uses a human psychological factor.</p>
<p>Amongst many, some of the examples of psychological social engineering are:</p>
<ul>
<li>An email from Public domain ID example ABC@goodsite.com (name in the INBOX could be displayed as HR@corporatenetwork.com / IT@corporatenetwork.com)</li>
</ul>
<p>The content of the mails could be:</p>
<p>1        “This is an automated employee detail collection form. In the view of current HINI Pandemic and heavy rains we are in process of updating and maintaining an up to date employee database. All the ‘CorporateNetwork’ employees are requested to cooperate and provide the necessary details at the earliest. Please fill in all the details and submit the form. This is an auto generated email, please do not reply to this email.”</p>
<p>2        “Virus Alert Recipient name: This is an automated alert sent by the virus update engine. A new virus which targets IT Services and Software Development organizations has been circulating the Internet. This particular virus requires an immediate software update to prevent infection. Please click the link below to update your workstation with necessary patches”</p>
<ul>
<li>Cold Calls to Employee’s impersonating as vendors or media personnel&#8217;s inquiring about the internal related details like Applications, IT Infrastructure, Physical Security etc.</li>
<li>Calls to employees impersonating as IT Helpdesk requesting for login credentials. The imposter could convince the victim by stating that the credentials are required for maintenance activities</li>
<li>Imposter could obtain employee details from Public domain and call up the organizations IT Helpdesk to reset the victims password and thus gain unauthorized access</li>
<li>Mails from forged Bank ID’s requesting for Internet Banking login credentials</li>
</ul>
<p>Don’t want to be victim to Social Engineering attacks, follow some basic thumb rules:</p>
<ul>
<li>Never allow people to tailgate with you.</li>
<li>Verify the identity of the visitor against his/her valid ID Card</li>
<li>Ensure all Entries / Exit points are secured at all times</li>
<li>Visitors should not be allowed in the office space without appointments. The could be requested to be at the reception.</li>
<li>Avoid use of corporate ID’s on public domain, blogs, discussion forums etc.</li>
<li>Do not share login credentials with anyone. IT Helpdesk or Banks do not need employees / customers login credentials for any of their operations.</li>
<li>Before replying to mails asking for sensitive / personal information verify the origin and sender’s details</li>
<li>Never click on unknown links / links contained in the mails of unknown origin. An innocent URL like www.goodsite.com could actually be linked to www.xyz.abc.net etc. which might infest your PC with Malwares, Trojans, Virus and worse Back-Doors giving complete remote access of your PC to attackers</li>
<li>Avoid accessing confidential and critical online details like corporate mail box, Bank accounts etc. in public places, hotels etc. where Internet security cannot be trusted</li>
<li>Read and follow the security guidelines dealing with Internet Banking issued by the Banks from time to time</li>
<li>Verify the SSL certificate of the Bank website before getting into any Internet Banking transaction</li>
<li>Use a strong and complex password</li>
<li>Do not note down the user ID &amp; passwords on piece of paper, notepads etc. which could be accessible to others</li>
<li>Use virtual keyboard where applicable</li>
<li>Avoid installing software’s / tools of unknown origin because these might open backdoors to your PC</li>
</ul>
<p>Educational Reference:</p>
<ul>
<li><a href="http://www.social-engineer.org/">http://www.social-engineer.org</a></li>
<li><a href="http://www.phishme.com/">http://www.phishme.com/</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/social-engineering-%e2%80%93-myth-reality/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Measuring WAN Performance</title>
		<link>http://www.clubhack.com/measuring-wan-performance/</link>
		<comments>http://www.clubhack.com/measuring-wan-performance/#comments</comments>
		<pubDate>Sun, 11 Jul 2010 04:51:24 +0000</pubDate>
		<dc:creator>VishalK™</dc:creator>
				<category><![CDATA[Network]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=19</guid>
		<description><![CDATA[Methodology to Measure the WAN Performance while selecting an optimum location for the Data Center (DC) Introduction: Network performance is one of the most critical factors to be considered while selecting the location for Data Centers. There are many factors that influence the network performance. These factors are highly dependent on the type of applications [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><strong><em>Methodology to Measure the WAN Performance while selecting an optimum location for the Data Center (DC)</em></strong></p>
<p><strong>Introduction: </strong></p>
<p>Network performance is one of the most critical factors to be considered while selecting the location for Data Centers. There are many factors that influence the network performance. These factors are highly dependent on the type of applications and services being hosted out of the data center. The Wide Area Network (WAN) factors which help in determining the network performance from the perspective of selecting a location for the data center are:</p>
<ul>
<li>Round Trip Time (RTT) from source to destination</li>
<li>Throughput</li>
<li>Theoretical Network Limit<strong></strong></li>
</ul>
<p><strong>1        </strong><strong>Round Trip Time (RTT): </strong></p>
<p>RTT is the time taken by the IP packet to transverse the path from the source to the destination and back. It is usually measured in milliseconds (ms).</p>
<p><strong>2        </strong><strong>Theoretical Network Limit :</strong></p>
<p>As the name suggests, theoretical network limit is the theoretical maximum (ideal) throughput possible on a given network link(s) between source and destination. It is typically expressed in Mbps. This limit is calculated based on RTT, Maximum Segment Size (MSS) and Loss rate in percent.</p>
<p><strong>3        </strong><strong>Throughput </strong></p>
<p>It is the amount of data transferred from one place to another or processed in a specified amount of time. Data transfer rates for networks are measured in terms of throughput. Typically, throughput is measured in kbps, Mbps and Gbps.</p>
<p><strong> </strong></p>
<p><strong>Methodology to calculate RTT, Theoretical Network Limit and Throughput</strong></p>
<p><strong>Step 1: Calculation of Round trip time (RTT)</strong></p>
<p>RTT can be calculated by sending ICMP Ping messages to the destination. Ping messages need to be sent between the source and destination between which the RTT needs to be calculated. Using Looking Glass utilities, Ping messages can be sent from different locations around the globe.</p>
<p>Looking Glass is a utility available on the internet using which Ping messages can be sent to the required destination from servers (or network devices) located in different locations around the world.</p>
<p>Thus, a very good approximate of RTT can be obtained between the source country * and the destination.</p>
<p><strong>Parameters required for measuring Theoretical Network Limit and Throughput:</strong></p>
<ul>
<li>Round trip time (RTT)</li>
<li>Maximum segment size (MSS) (typ.1460 Byte)</li>
<li>Loss rate in % (typ. &lt; 10<sup>-6</sup>% (&lt; 10<sup>-8</sup>))</li>
<li>TCP window size (typ. 64 Kbyte)</li>
</ul>
<p><strong>Step 2: Calculation of Theoretical Network limit </strong></p>
<p>The approximate Theoretical Network limit can be calculated using the following formula (based on the Mathis et.al. formula)</p>
<p>Theoretical Network rate &lt; (MSS/RTT)*(C/sqrt(Loss)) [ C=1. Loss is the Loss rate in %. typ. &lt; 10<sup>-6</sup>% (&lt; 10<sup>-8</sup>)  ]<strong></strong></p>
<p><strong>Step 3: Calculation of Throughput </strong></p>
<p>Throughput can be calculated using the formula</p>
<p>Throughput &lt;= TCP buffer size / RTT</p>
<p>Where, TCP Buffer size &gt; = TCP Window size, Typical TCP window size = 64 Kbyte</p>
<p>The theoretical network limit and throughput are dependent on the RTT. So, a very good approximation of RTT is imperative. RTT analysis should be carried out at different times, during the course of the day and an average should be taken, to get a good approximate.</p>
<p><strong>Note: </strong></p>
<p>1        Many looking glass utilities are available on <a href="http://www.traceroute.org/">www.traceroute.org</a></p>
<p>2        The calculator for theoretical Network limit and Throughput is available on <a href="http://www.switch.ch/network/tools">www.switch.ch/network/tools</a></p>
<p>* The exact location within the source country depends upon the location of the available network device (Looking Glass) from where Ping messages are being sent.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/measuring-wan-performance/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

