Friday, September 6, 2019
Prison Reform Essay Example for Free
Prison Reform Essay Reform was a major issue in early 19th century America because it was a time when more middle-classed Americans were able to devote time to social causes and issues that they saw that concerned them. One of these important social movements was prison reform, and how men and women in prison were treated. In the early 1800ââ¬â¢s the United States was regarded as having the best penal system in the world. This is why during the early 1800ââ¬â¢s Alexis de Tocqueville was sent from France to the United States to study the penal system there. What he was coming here to study was how the system of prisons had been reformed already by Americans. Many individuals, in particular religious advocates who took up the cause of prison reform, had established themselves as the voice of prisoners. They felt that while prisoners needed to do time for their crimes and be punished accordingly, they also had the right to have good conditions within the prisons themselves. These people had a goal of creating prisons that were conducive to not only punishing individuals, but reforming them became an important part of their time in prison. These religious reformers felt that prisoners should be reformed to become good citizens and, if they never left jail, then at least they could be religious individuals. à à à à à à à à à à à The successes of these reformers were that they did create a great amount of interest in reform. Many new prisons began to be built that would be more conducive to reforming prisoners. These successes were shortly lived, however, because sadly the prisons did not go up as quickly as the prisoners were going in and therefore old prisons that were not good conditions were still in use, and many prisoners still languished in them, in even worse conditions than before.
Thursday, September 5, 2019
The Theme Of Alienation Loneliness And Selfhood English Literature Essay
The Theme Of Alienation Loneliness And Selfhood English Literature Essay In Krapps last tape, Krapp systematically distanced himself from companionship and love of other people. When Krapp was twenty nine years old, he lived with a woman named Bianca, whose love he later described as a hopeless business despite the fact that she truly loved him and possessed very warm eyes that always seemed to impress him (Beckett 54). After the death of his mother when Krapp was only thirty nine, he felt that life had lost meaning. This is evident from the words he said to his new love that it was hopeless and there was nothing positive about life. He rejected his lover and completely lived alone from this time onwards, although he was sometimes visited by Fanny, who was a bony old ghost of whore (Beckett 98). At the age of sixty nine, Krapp was only accompanied by his loneliness during his birthday celebration, whereby he spent the day in a pub deeply occupied by heavy thoughts of his past life and his lost chance for love and fulfilled life (Beckett 67). Krapps last tape is a compact statement of a mans predicament as a prisoner of time. He preserved the worst for himself and threw the best away by rejecting love of others. At the age of sixty nine, the only thing he could do was to play a tape he made when he was thirty nine, reminding him of the last love that he rejected when he still had potential for happiness in life (Beckett 89). Krapp was a lonely man, whose isolation was self inflicted. He viewed women as bad influence and valued his career as a writer more than any human companionship or relationship. He confessed that he could not withstand the thought of his future career as a writer being interfered with by women and love (Beckett 89). Krapp chose a tape recorder to be his sole companionship. He seemed to find comfort in recorded voice, which he faithfully listened to, even in old age. However, although Krapp lived like he did not need anyones company, he seems to have been inwardly desperate to have someone to engage in a conversation. He eventually discovered that he had made a terrible mistake by forsaking the rest of humanity (Beckett 130). Loneliness, selfishness and selfhood are clearly illustrated throughout Krapps character and way of life. He never found satisfaction in life even after selfishly living a lonely life that he had chosen to live and he realized that the selfhood that he had discovered had truly misled him. He realized that he needed other people and the rest of the world in order to be fulfilled but it was already too late. In Kate Chopins story of an hour, Mrs. Mallard went through feelings of relief as soon as she received the bad news of her husbands death, which was said to have occurred in a train accident. Although at first she was sorrowful and confused by the news of her husbands death, she was suddenly relieved by the thought of being free from marriage and slavery of love. She knew that no amount of love and security could pay the lack of control over her own existence (Chopins 194). Mrs. Mallard seemed to have been controlled by society, pretending to be happy and fulfilled in her marriage. As molded by the society, she appeared to be a perfect wife, who enjoyed companionship of her husband and loved being a wife. She suppressed her true selfhood and sacrificed her delight to please the society, pretending to be happily married. As expressed in her reaction and sigh of relief when she heard the news of her husbands death, it is quite evident that she had always inwardly struggled with her marriage to Mr. Bently Mallard, that was dominated by male chauvinism. Feminism shown through freedom upon her husbands death explains her happiness and relief to be alone, free from bondage of marriage and love (Chopin 193). Her own feelings of freedom came back possessing her when she first uttered the words free, free! In this story, Mrs. Mallard is described as a woman who had forgotten and abandoned herself throughout the entire period of marriage to her husband. The husband is described as being happy with the marriage, despite the fact that Mrs. Mallard was not happy and inwardly viewed the marriage as slavery. Her emotions had been stiffled and and suppressed to fit into hollow social conventions of the society. She was the submissive woman, who believed that her husband had a right to impose his will on her (Jamil 216). However, she suddenly gained control over herself after discovering that she had been set free from bondage of marriage and slavery of love by the death of her husband. She embraced visions of a bright future and realized that whether she had loved him or not was not important anymore, all what was important to her now was the possession of self assertion that she experienced afte r his death. (Choppin 193, 194). This was the nineteenth century American womans hour of awakening into selfhood, which gives her immesurable joy and beauty of life. (Jamil 215). Her happiness after discovery of her selfhood was so strong that when she realized that her husband was not dead, she immediately collapsed. She could not imagine how she was going to abandon her new found freedom and return to life with her husband, where she would be required to bend her will to his. Mrs. Mallard preferred to live alone, without her husband because that meant freedom to her just like Mr. Krapp chose to live alone and viewed women and love as a hopeless business. To him, they would interfere with his freedom of pursuing his writing career, while to Mrs. Mallard, the presence of her husband was a permanent bondage to slavery that had taken away her freedom and selfhood. The story of a sorrowful woman by Gail Godwin depicts a wife and a mother who gradually withdrew from her family after becoming overwhelmed by her husbands and childs presence and completely shut them out of her life. Their presence was a daily reminder of the fact that she had lost her freedom as well as her self- identity and her life would never be the same again (Godwin 78). She wanted her freedom and her self -identity back. She wanted to stay away from her husband, her child and the rest of the community and live a lonely life because to her that would be more fulfilling, just like Mr. Krapp. She viewed marriage as a source of pain, that had taken away her identity, her selfhood and her freedom. She further wanted to stay away from the society that advocated for marriage and therefore decided to live a lonely life. However, what she considered as freedom and selfhood did not give her the fulfillment that she had longed to have. Her dissatisfaction with her role as a mother and a dutiful wife made her to try many other alternatives in life but she did not find satisfaction in any of the options that she tried out. She did not find any particular role that could suit her and therefore she ended up withdrawing from the rest of the world. This is illustrated by the coldness and isolation of the undecorated white room that she moved into. She even pictured herself as a virgin in a tower, untouchable and profoundly isolated (Goldwin 117). This shows that she had not only isolated herself physically from her family and the rest of the world but also emotionally thus making herself an outsider looking in on the world. She viewed her family as source of bondage, slavery and dissatisfaction in life. However, isolating herself from the rest of the society did not give her any satisfaction like she had expected. She only ended up being a lonely woman, both physically and emotionally. The theme of alienation, selfhood and loneliness cut across the three stories discussed. The three main characters in the stories viewed family as a source of bondage, limitations and dissatisfaction in life. It is portrayed as a form of slavery that would tie women and men to their families and take away their freedom as well as their selfhood. These stories portray traditional marriages whereby women are supposed to be submissive to their husbands and be good home makers as unfulfilling and undermining to women. The women discussed here are seemingly tired of living under bondage and slavery of their husbands and the entire society and are looking for liberation and freedom. They want to rediscover themselves and find more fulfilling roles that define them and give them a voice as useful members of the society. They can no longer stand the idea of being dominated by society as well as by their husbands as clearly observed when Mrs. Mallard collapsed on discovering the truth that he r husband was truly alive and not dead as it had been reported. On the other hand freedom in these stories is categorically accompanied by loneliness and lack of fulfillment as portrayed by Krapp and Godwin. The woman in Godwins story did not find any satisfaction in her loneliness after abandoning her family and the society at large. Her freedom brought more emotional and physical dissatisfaction as she tried to rediscover herself and even to assign her new roles, which only tormented her mental and emotionally, causing even more pain to her life. After spending all his life alone with the tape recorder as his sole companion, Krapp finally came to his senses and realized that he had actually ruined his own life because he was lonely and desperate for companion. He realized that listening to the tape recorder alone could not give him the delight and the fulfillment that he had longed to have in his entire life. However, it was already too late as he was already an old man.
Wednesday, September 4, 2019
Installation And Configuration Of Honeyd Computer Science Essay
Installation And Configuration Of Honeyd Computer Science Essay As an Open Source solution honeyd does not offer any support or Graphical User Interface for installation or configuration. The source code should be downloaded on the honeyd host, get compiled and the binary and configuration files of honeyd be installed. Then the Honeyd binary file could be run from the command line prompt of the Linux system used. A second more efficient way is to install the Honeyd package as root with the command: sudo apt-get install honeyd To function correctly, honeyd requires also the following libraries to be installed: libevent: a software library providing asynchronous notification for events libnet: a portable framework/library used for network packet construction libpcap: a framework used for capturing packets passing through a network Honeyd comes with numerous scripts written in the script languages Python and Perl by both NielsProvos and other contributors which can be used to emulate services on the appropriate ports in the virtual honeypots. Although installing and running honeyd might seem quite simple, it is a particularly complicated software tool with a range of command line parameters affecting its behavior. After being correctly installed on our system, the following command is used to start honeyd: honeyd -p /etc/honeyd/nmap.prints -d -f /etc/honeyd/honeyd_thesis.conf In the following, the above parameters used are explained in detail [1]. The first command honeyd instructs the Linux kernel to execute the honeyd binary file. The -p fingerprints option gives the pathname of the Nmap fingerprint file (here: nmap.prints) which contains the Nmap signature database that honeyd uses to emulate different operating systems at the network stack. This will dictate how honeyd will behave towards attackers depending on the emulated operating system. The -d flag allows honeyd to run in debug mode with all the messages getting printed on the current terminal. This mode can be useful when testing honeyd and its functionality on the fly. Omitting this flag will cause honeyd to run as a daemon process in the background. Another important command line parameter which is not used above is the -i flag. This flag is used when the computer system hosting the virtual honeypots has more than one network interfaces. In this case, the -i flag should be used to denote which interface or interfaces will be the ones receiving network traffic for the virtual honeypots. Finally, the -f command line parameter is probably the most important one as it lies at the heart of the honeyd configuration. The -f flag gives honeyd the path name for the configuration file (here: honeyd_thesis.conf) where all information about the virtual honeypots are kept such as which operating systems are used and which services should be emulated on each honeypot. Honeyds configuration file is a simple straightforward text-based file with a context-free-grammar configuration language which can be described in Backus-Naur Form (BNF). Although quite straightforward, it offers a wide variety of options when it comes to configuring the virtual honeypots. Its main role is to specify which are the IP addresses on which the virtual hosts will be running waiting for the attackers probes and what services should be emulated on each one of them. Templates constitute the core of the configuration files for virtual honeypots [3]. Honeyd works via the creation of templates which describe and simulate specific computer systems configured in great detail. The first step taken to create a virtual honeypot is to create a corresponding template which will specify the defining characteristics of the honeypot like the simulated operating system, the ports on which the honeypot will listen and the services being emulated. After that, an IP address will be assigned to the template bringing up the honeypot and operating at that specific network address. The command to create a new template is create and the parameter entered should be a name relative to the system intended to be simulated. Each template should have a different name. A different parameter that can be used is the default one. This can be used in case honeyd does not find any template matching the destination IP address of a packet and it is preferred when there is a need f or assigning a group of IP addresses under a common template rather than assigning each template to a unique address. Following the creation of a template, the configuration commands define how the virtual honeypot will behave. The set and add commands are used to shape the behavior of the configured honeypot. The first characteristic to be defined by the set command is the operating system or personality from the Nmapfingerprint database which will dictate how the computer system will behave at the IP network stack. The personality indicates the form of the responses honeyd will be sending back along with other details such as the TCP sequence numbers, the TCP timestamps and other. It can be chosen from a great number and variety of famous operating systems like Linux, FreeBSD, Mac OS, Microsoft Windows, Cisco IOS, etc. The set command can also determine the default behavior of the template regarding the supported network protocols (TCP, UDP, ICMP), i.e. how the template reacts to probes at ports which are unassigned. The action taken can include three options: Open: this signifies that all ports for the particular network protocol are open by default. This setting applies only to TCP and UDP connections Block: this indicates that the ports will ignore any incoming connections and packets directed to them will be dropped by default. Reset: this means that all ports for the specified protocol are closed by default. For a TCP port, honeyd will reply with a TCP RST packet to a SYN packet whereas for a UDP port with a UDP-port unreachable message. Finally, honeyd gives the option to spoof the uptime of a host, referring to the duration of time since the system was first booted. The set uptime command does exactly that. If no uptime is defined, honeyd assumes an arbitrary value up to 20 days. Following the set command is the add set of commands. The add commands constitute the center of the template as they are the ones which signify what applications will be running on each port and which are the services that can be remotely accessed by the outside world. The syntax of the add command requires to specify the network protocol, the number of the port and an appropriate action. As we see in the above configuration, the options open, block and reset that are used for the default behavior of the template can also be used on a per-port basis. The important difference here is that apart from just opening or closing ports, predefined scripts can be called and emulate different services on different ports. This possibility of integrating scripts written in programming languages within the honeyd configuration gives virtual honeypots a high degree of realism. A realistic service to which an adversary can talk can grant much more detailed information about an attacker. Apparently, the more scripts running on ports, the higher the possibilities for interacting with attackers. The following example from our configuration file starts a telnet simulator service for TCP connections on port 23: add Linux1 tcp port 23 /usr/share/honeyd/scripts /unix/linux/suse8.0/telnetd.sh When a remote hosts attempts to establish connection with the above Linux1 template-personality on port 23, honeyd will initiate a new process executing the shell script ./telnetd.sh. The script is receiving input data via stdin and it is sending replies back to the sender via its stdout. Apart from TCP connections, scripts can also be used to interact with remote users through UDP connections. Important to mention is that when honeyd receives a new connection on one of its honeypots port, it forks (starts) a new process which will execute the specified script. This can be at times quite risky as it can lead to a performance bottleneck if the virtual honeypots get overwhelmed with network traffic, e.g. if deployed in a busy network [1]. The last command which should be implemented to configure successfully the virtual honeypot is the bind command whose role is to bind the created template with the IP address on which it will be operating virtually. The Ethernet option for the set command can be used to assign explicitly a unique MAC address to each configured template. As mentioned earlier, physical addresses are essential for network communication and via proxy ARP the honeyd host can reply with its own MAC address to the ARP requests regarding the honeypots. A disadvantage of this is that attackers can easily realize the existence of virtual machines as all the IP addresses of the honeypots will relate to one MAC address. Using the set ethernet command, this risk is wiped out and no need for configuring proxy ARP exists as honeyd takes care of all the ARP procedures [1]. Attention should be given to avoid any MAC address collisions when assigning them to the virtual hosts, as physical addresses should be unique for every system. 2.2.5. Honeyd Logging Information Gathering The Honeyd framework comes with a built-in mechanism for gathering information regarding the connection attempts launched from adversaries targeting the virtual honeypots. Honeyd has the ability to populate files with log information for both connection attempts by attackers and established connections for all protocols. The command used to log the network activity concerning the virtual honeypots is the following: [emailprotected]:/etc/honeypot$ honeyd -p /etc/honeyd/nmap.prints -d -f /etc/honeyd/honeyd_thesis.conf -l thesis.log The -l command line option enables the packet-level logging in honeyd. It only takes one parameter and this is the log file that will be used to create the connection logs. In this case, the log filethesis.log. It is important that the directory in which the log file resides, should have the permission to be writable by the user who is running honeyd. The log file contains information about the time a connection was attempted, the source IP address and port of the attacker attempting to connect, the destination IP address and port of the virtual honeypot under attack, the protocol involved and if the attempt is successful and the connection eventually establishes, the starting and ending point of the connection in time along with other information like the total number of bytes transmitted. The packet-level log files can be extremely useful when used in combination with data mining tools. They can offer a great deal of helpful information regarding the connection attempts launched by adversaries. Scripts written in Perl, Python or other programming languages can extract useful information and statistics from the log files such as the number of IP addresses probing our virtual honeypots on a daily basis, a list with the most common ports to be attacked and other data giving an insight on the scanning activity of the virtual hosts from the potential attackers. This kind of log files can get extremely large over time and care should be taken regarding the processing capabilities of the data mining tools used in each case. Apart from packet-level logging, the option for service-level logging is also provisioned by honeyd [1]. Whereas packet-level logging gives a general view of the overall network traffic handled by the virtual honeypots, service-level log files give a more detailed view on the ongoing sessions. When scripts emulating services on different ports are used in honeypots and these scripts have additional logging capabilities, a great deal of interesting information can be attained about the attackers activities and methods they use to take a system under their control. 2.2.6. Significance of Honeyd As an Open Source low-interaction honeypot, honeyd introduces a great range of interesting features as those were mentioned previously. Being an Open Source software tool indicates that its distribution is free and anyone can have access to the source code [3]. This means that individuals and groups belonging to the network security community can customize and contribute to its source code adding more emulated services which will improve the interaction level between the attacker and the virtual honeypots providing us with even more information about the methods they use to break into systems. Over the next years we can expect an exponential rise in our ability to capture malicious behavior via honeyd. On the other hand, being an Open Source solution, honeyd does not offer any support for maintenance or troubleshooting from an official source. As a low-interaction honeypot honeyd is basically deployed as a production honeypot used to detect and capture network attacks. No real complete operating system is offered but adversaries are limited to the network services emulated by the scripts. As such, honeyd introduces a low risk to organizations for their overall security when introduced [3]. A recognized by the attacker honeypot becomes useless, so camouflaging honeyd is an issue that should be addressed. Xinwen Fu et al. have shown that an adversary can fingerprint honeyd through measuring the latency of the links simulated and proposed a camouflaged honeyd capable of behaving like its surrounding network environment []. Another issue to be addressed is the scripts emulating network services in honeyd. These need to be written by hand and as a result not so many scripts exist. CorradoLeita et al. have proposed a method which can alleviate this issue by automatically creating new scripts []. Finally, the fact that no alerting built-in mechanism exists in honeyd as well as that only command-line interface is offered are two shortcomings of its design. Chao-His Yeh et al. in their work have proposed a Graphical User Interface (GUI) for honeyd offering a variety of interesting features []. 2.3. Dionaea Dionaea [] is an open source low interaction honeypot that can be further categorized into the class of malware collector honeypots. The aim of these low interaction honeypots is to create vulnerabilities on specific services, in order to attract malware exploiting the network and if possible, capture and download a copy of the malware. As nowadays the number of malware attacks is increasing, these copies could be very useful for monitoring and analyzing in a safe environment the behavior of a malware and finding defending security solutions. In literature, two ways of malware analysis have been proposed [], static and dynamic analysis. As their names suggest, static analysis is simply the procedure of reading the code and trying to figure out the intention of the malware, while dynamic analysis includes the execution of the code of malware in a secure manner. Usually, these two types of analysis are combined and the output of the static analysis can be very useful for the dynamic one. The collected malware copies are usually stored in the form of a binary file. Malware collectors such as Dionaea can download a great amount of binaries although in most cases these files may represent the same malware. A binary should have different MD5 hash in order to be characterized as unique []. From the perspective of detection, two types have been proposed: detection of existing malware based on patterns or samples and zero-day detection schemes. Zero-day malware is defined as a malicious software which is not detected by anti-virus programs due to lack of existing virus signatures or other malware detection techniques []. Dionaea is usually referred as Nepenthes [] successor. The main improvements on the features of the new malware collector compared to Nepenthes include [18]: the protocol implementation in python scripting language the use of libemu library for shell code detection instead of pattern matching which requires a copy of the shell code, thus making extremely hard the detection of zero-day malware support for ipv6 addresses and TLS encryption development of the VOIP module 2.3.1. Features of Dionaea As mentioned above, Dionaea developers used python to implement the network protocols. This selection allows for an easier implementation compared to C language for instance. However, the main reason for this choice was to deal with the new generation of malware that utilize API to access services. SMB is the basic protocol supported by Dionaea. The SMB (Server Message Block) protocol works on port 445 [] and is used from Windows operating systems for file and printer sharing over TCP. Akamais [] internet report for the second and third quarter of 2012 (figure 3), shows that port 445 was the most targeted port at this period, as it attracted almost one third of the total network attack traffic. Attack-traffic-of-top-ports.jpg Figure . Percentage of global internet attack traffic during the 2nd and 3rd quarter of 2012, by targeted ports [24] The SMB protocol has known vulnerabilities and it is a common target especially for worms. That is the reason for which it has been selected by the developers of Dionaea as the main protocol and, as it will be shown in the following chapter, most of the captured copies of malware originated from that port. Other important protocols that Dionaea supports are the following: HTTP and secure HTTP (HTTPS) are also supported on port 80 FTP, although the possibility of an attack to an ftp service is rather low.Dionaea supports ftp protocol on port 21. It implements an ftp server which can create directories and also upload/download files TFTP, tftp server is provided on port 69 and is implemented to check the udp connection code MSSQL, Dionaea also emulates a Microsoft SQL server on port 1433. Attackers are able to login to the server but as there is no real database provided by Dionaea, there is no further interaction MYSQL, Dionaea also implements Mysql wire stream protocol on port 3306 SIP, as mentioned above a new module for supporting VOIP was added to Dionaea. The VoIP protocol implemented is SIP. The operation of this module consists in waiting for incoming SIP messages, logging all data and replying accordingly to the requests. Only when malicious messages are detected, Dionaea passes the code to the emulation engine. 2.3.2. Operation of Dionaea The main function of Dionaea is to detect and analyze the offered payload of the attacker in order to gain a copy of the malware. To succeed this, Dionaea offers different ways of interaction with the attacker. For example, it can provide a command prompt cmd.exe window to the attacker and react accordingly to the input commands or use the URLDownloadToFileapi to get a file through http. If the previous operation is successful, Dionaea should know the location of the file that the attacker tries to send and attempts to download the file. One very interesting feature of Dionaea is that it can send the downloaded file to a third party for further analysis than simply storing it on disk. Dionaea is also a great monitoring tool. It records all the activities on the ports it listens but also keeps record of connections to other ports. All these recorded data are kept in a log file in text format. Although we can choose the format of the log file, for instance filter the log messages or sort the events from the most recent to the least recent ones, it is still quite difficult to read and gain useful information. Therefore, Dionaea creates ansqlite database with all the recorded activities and makes it easier for the user to make queries and obtain useful information from the honeypot. From the log file we can retrieve useful data to understand the operation of the honeypot. Dionaea records three types of connections: reject, accept and connect. Connection attempts to the ports that Dionaea does not listen are marked as reject. On the other hand, attempts to monitored ports are marked as either connect or accept. In any case, Dionaea records in the log file and additionally in the sqlite database, valuable information about these connections such as the timestamp of the connection, the IP addresses of the local and remote host and the corresponding ports and protocols. Except of the information about the connections, Dionaea also keeps in database other significant tables such as download tables which contain information about the id of the connection, the url from which the malware was downloaded and also the downloaded md5 hash. 2.3.3. Installation and Configuration of Dionaea The installation of Dionaea requires some basic knowledge of Linux operating systems, as it is important to install all the required dependencies first but there are useful and detailed instructions in the official home page too. Dionaea is a flexible software tool and can be easily configured according to our needs by editing the configuration file. More specifically, in the configuration file we can edit the following: We can change the directory of the log file and more importantly we can reduce the amount of the produced data. By default, Dionaea records every event in the log file. We can filter the output data by changing the levels value from all to only warning, error for example. Dionaea writes the last event at the end of the log file. Thus, it is really useful to rotate this behavior in logging section, so that the last event can be read directly at the first line of the log file. Moreover, we can modify the path of the downloaded binaries and bi-streams folders. Bi-directional streams allow us to replay an attack that Dionaea captured on IP-level. As we mentioned above, with Dionaea we can submit directly the downloaded malware to third parties for further analysis. In the submit section of the configuration file, we can edit all these details. One more interesting feature is that we can manually configure the IP range that Dionaea can listen to and also add ipv6 addresses. By default, Dionaea listens to all the IP addresses it can find. Finally, we can configure the modules section which is considered the most significant of the configuration files. The modules section includes a list of services which Dionaea supports and we can enable or disable some of them. For instance, we can enable and edit the pcap module if we want to keep information about rejected connection attempts or additionally, if we are interested in the operating system of the attackers, we can enable the p0f service. 2.4. Kippo Kippo [] is a medium interaction honeypot which emulates an SSH server. It provides an interaction shell to the intruder while monitoring and recording all the activities. Furthermore, it is designed to monitor brute force attacks. Secure shell (SSH) [] is a network protocol which provides encrypted communication between two devices. SSH allows users to gain access to remote devices through a shell or interactive command line in a secure manner. The port used by SSH protocol by default is 22 [23]. In most cases, a client can access an SSH server by entering a valid username and password through an SSH client tool. From that perspective, SSH servers are vulnerable to password attacks. Especially SSH dictionary or brute force attacks are very common and quite easy to be launched even by unqualified attackers. These types of attacks are based on the fact that many users choose their credentials from a small domain []. Thus, brute force attacks try all the possible username and password combinations until the correct one is found, in an automated way. This attribute could be very useful for SSH server honeypot implementations. In order to have as many successful logins as possible in our SSH honeypot, it is preferred to choose credentials that rely on automated dictionary attack tools. Ciscos white paper about SSH login activity [] shows that for a total of approximately 1,56 million login attempts, username root was used almost in 35 percent of all cases. The following figure depicts the 10 most used usernames according to the results of the research conducted by Cisco. cisco.jpg Figure . Top 10 attempted usernames [28] In addition, other surveys [],[ ] give some interesting information about the most commonly used passwords in connection attempts. The top password combinations include variations of the username such as username or username123 and passwords like 123456 or even password. The results about the usernames used are almost the same like the ones in Ciscos research. 2.4.1. Features of Kippo Kippo is implemented in python language. As we mentioned above, Kippo basically emulates an SSH server on port 22 and logs all login attempts to that port. Whenever a login is successful, Kippo monitors all the input commands of the attacker and replies to these commands in order to convince the attacker that she interacts with a real system. A list of the available commands can be found in Kippos directory. More specifically, the features of Kippo include: a fake file system. The attacker can add or remove files with the appropriate command Kippo saves files that have been downloaded by the attacker with the command wget, in a specific secured folder Kippo gives the ability to the attacker to add fake file contents, using for example the cat command provides fake output for some specific commands such as vi, useradd, etc. tries to fool the attacker with some reactions to specific commands, for instance exit command does not work, which means that the attacker thinks that has disconnected but still can be monitored by kippo. all the sessions are recorded and can be easily replayed with the initial timestamps all records are kept in an sql database. 2.4.2. Operation of Kippo Kippo records all the useful information in a log file but also in ansql database. The main tables of the database include: authentication table, containing information about the login attempt, the timestamp of the attempt and also the usernames and passwords that have been used client table, which contains information about the SSH client version that has been used input table, with information about the input commands that have been entered. Also, in that table we have information about the session id, the timestamp and additionally if the command was successful or not sessions table, containing information about the id of the connection, the duration and timestamp of the connection and the IP address of the attacker sensors table providing information about the ssh server and the IP address of the host finally, the ttylog table which, as mentioned above, contains information about how to replay sessions with the corresponding timestamps 2.4.3. Installation and Configuration of Kippo The installation of Kippo is quite easy if someone follows the instructions of the home page and installs the latest version of the software. In the configuration file of Kippo we can customize the honeypot according to our needs. We can edit the IP of the host if we want to change the default which is 0.0.0.0 and also the listening port which is by default 2222. Port 2222 is an alternate port and may be quite useful for testing purposes but as long as most ssh attacks are detected on port 22, this choice would reduce the number of recorded attempts. Thus, it is necessary to change the default port to 22. To succeed this, we need root privileges to the system but this is not recommended due to security reasons. Instead, port redirection can be used as proposed in Kippos home page or by using other existing solutions, such as authbind []. In addition, in the configuration file we can change the name of the user in the interaction shell. By default, it is sales, which is quite attractive to attackers. Furthermore, we can set the desired password for our server. By default, it is 123456 which as we have shown above, it is included in dictionary attacks and could guarantee a large number of successful logins. Besides that, Kippo creates a dedicated password database, where we can add more valid passwords. Also, some other configurations include the directories of important folders such as the downloaded folder, a fake file system folder and password and input data storage folders. Finally, we can edit the credentials in order to connect Kippo log files with the sql database
Tuesday, September 3, 2019
A Humean Theory of Distributive Justice Essay -- Hume Dworkin Entrepre
This paper suggests a strategy for constructing a contemporary Humean theory of distributive justice which would serve to ground what I call an entrepreneurial welfare state. It is argued that blending David Hume's insights about the origins and purposes of justice with Ronald Dworkin's insurance-based reasoning supporting his equality of resources model of distributive justice will yield a state which, as a matter of justice, encourages its members to engage in entrepreneurial activities and which protects them from the worst extremes of market economies. Introduction I claim that an attractive theory of distributive justice can be constructed by blending David Hume's ideas about the origins and purposes of justice with Ronald Dworkin's insurance-based justification for his equality of resources model of distributive justice. The resulting theoryââ¬âless egalitarian than Dworkin's and more liberal than Hume'sââ¬ârecommends adopting an entrepreneurial welfare state.. Hume on the Human Situation Hume begins his account of the origins of justice by observing that animals tend to fit into two categories: either they are lion-like, having substantial needs and great resources with which to satisfy those needs, or they are sheep-like, having little in the way of abilities to satisfy their needs but also having correspondingly few needs. All animals have abilities and capacities sufficient to fulfill their needs. Both lions, with their prodigious appetites and means of satisfying those appetites, and sheep, with their modest appetites and modest means of satisfying those appetites, could survive on their own in the wild. But humans, Hume claims, are quite different. Like lions, we have substantial needs. But like sheep, we hav... ... and Practice of Equality, page 72, (italics added). 17. We can distinguish between two kinds of luck: option luck and brute luck." Option luck is a matter of how deliberate and calculated gambles turn outââ¬âwhether someone gains or loses through accepting an isolated risk he or she should have anticipated and might have declined... Brute luck is a matter of how risks fall out that are not in that sense deliberate gambles." Dworkin, Sovereign Virtue: The Theory and Practice of Equality, page 73. 18. The ideas in this paper benefited from comments by audiences at the Atlantic Regional Philosophical Association meetings at Acadia University, the Canadian Philosophical Association meetings at Memorial University, and at the Philosophy Department at Dalhousie University. For extended discussion I thank Nathan Brett, Susan Dimock, Duncan MacIntosh, and Thea E. Smith.
Exploring the Dark Side of Human Nature in The Killers Essay -- Killer
Exploring the Dark Side of Human Nature in The Killers à à à à à Hemingway's "The Killers" illustrates that unexplained violence is an integrated part of society.à To acknowledge the cruelties of life is to come to terms with horrifying events that can not be denied.à A person may lack the maturity to cope with everyday life if they do not realize that evil can exist in any given society. à à à à à The story is told in the objective point-of-view.à "Hemingway's approach to his story is different; he approaches it as a journalist approaches a news story, from a focal point somewhere outside of his characters" (Jaffe, 209).à The author tells the story only as an observer.à He does not tell the reader what the characters are thinking, nor does he give the reader any insight to his personal feelings. à à à à à As the story progresses, the reader learns that "The Killers" intend to live up to the label Hemingway appropriately gave them.à "The Killers," however, are not the main focus of the story.à The title is symbolic only of the evil that the story revolves around, but the main focus of the story is Nick's discovery and disbelief of the true evil that lurks in everyday life.à Nick struggles with the knowledge that he can not change Ole's fate as he states, '"Don't you want to go and see the police?...Isn't there something I could do?...Maybe it was just a bluff...Couldn't you get out of town?...Couldn't you fix it in some way?'" (Hemingway, 251).à He is not mentally prepared to accept the darker side of human nature.à à à à à à à à "It is a story of discovery, in which the anonymity of the observer serves to compel the reader's attention to the bare facts as they add up, one by one, to a pattern of demonstrated yet... ...rld, they will be over-burdened with the unfairness of everyday life. à Works Cited Benson,à Jackson J.à Hemingway...The Writer's Art of Self-Defense.à Minneapolis: University of Minnesota Press, 1969. Brooks, Cleanth and Robert Penn Warren.à Understanding Fiction. 3rd ed.à New Jersey: Prentice-Hall, Inc., 1979. Hemingway, Ernest.à "The Killers."à Great Tales of Terror and the Supernatural.à New York: The Modern Library, 1972. Jaffe, Adrian H. and Virgil Scott.à Studies in the Short Story.à 5th ed. New York: The Dryden Press, 1956. Moseley, Edwin M.à Pseudonyms of Christ in the Modern Novel.à New York: University of Pittsburgh Press, 1962. Walcutt, Charles C.à Man's Changing Mask.à Minneapolis: University of Minnesota Press, 1966. West, Ray B. Jr.à The Short Story in America.à 2nd ed.à New York: Books for Libraries Press, 1968.
Monday, September 2, 2019
Roman Gladiators
The Gladiators in general were either condemned criminals, prisoners of war, slaves brought for the purpose of the games and people who volunteered on their own will. The gladiatorial games reached their peak between the 1st century BCE and the 2nd century CE. Men who committed a capital crime were sent to the gladiatorial arena without a weapon defending themselves with their bare hands. The men who did not commit a capital crime were sent to training schools called Ludi. The earliest training schools were in Campania. At these schools they did not teach them to kill people but instead taught them to disable and capture their opponent. Criminals who trained in the schools were allowed to pick their own weapon and defence. If they survived a couple of years without dying they would receive freedom. The gladiators had to do what their owners (Lanista) told them to do otherwise they would be punished either by no food or beaten up. The gladiators were given adequate food supplies eating 3-4 times a day and received medical care. The Roman militaries success in war meant a big haul in of prisoners of war for the use in the gladiatorial games. Men who entered the games by free will had to take an oath in which they had to agree to the consequences of the game. This oath was: Being branded. Being chained. Being killed by an iron weapon. To pay for their food and drink they received with their blood and to suffer things even if they did not wish to. In the morning season of the games the Bestiarii or combatants who were taught to fight against animals were sent into the ring to fend for their lives against animals such as lions, tigers and bulls. Thousands of animals were slaughtered due to this proceeding. After these battles, unlucky men who had committed capital crimes were executed in front of the whole crowd by a sword. The winner of the gladiator battles received a palm branch form the editor. If he was outstanding he may even receive a laurel crown and money but the most sought-after award was the wooden training sword or staff given by the editor. There were many different types of gladiators. The Thracian gladiators were prisoners who were sent to Capua to train for the games in amphitheatres. Their uniform consisted of light leather for the body, little helmet, light shoes and a small round shield. They were trained to run around their opponents this is why they only had light gear. They had great mobility and stamina. Reziarius were equipped with a long net which was used to trip and trap their opponents, a fuscina (trident) which was their offensive weapon. They also had a small dagger which they used to give the final blow. They wore leather for protection and no helmet or shield to deflect their opponents strikes this is why they had to by agile and fit. The Dimacheri had two short swords and only two short leather arm guards to protect themselves. Speed was their speciality, they ran around their opponent and quickly evaded them making the opponent tired before killing him. Sannita were part of the heavy uniform gladiators. They wore a metal plate to protect the chest a long shield, a helmet with a grid to cover the eyes and a long sword to attack. These gladiators were slow but effective within the ring. The Generic gladiators had no particular skill they were used to fill up the space when the event went the whole day or more. Other types of gladiators include the Provocatores, Sesterziarii, Catervrii, Mirmillion, Essedarii, Paegnaria (dwarfs). The weapons of the gladiators consist of fascina(harpoon), galea(visored helmet), galerus(metal shoulder piece), gladius(sword), hasta(lance), iaculum(net), manicae(leather elbow or wrist bands),parma(round shield) ,scutum(large shield) and sica(curved scimitar).
Sunday, September 1, 2019
Business memo for ââ¬ÅI Wonââ¬â¢t Hire People Who Use Poor Grammar. Hereââ¬â¢s Way,ââ¬Â Essay
After reading Kyle Wiensââ¬â¢ recent article, ââ¬Å"I Wonââ¬â¢t Hire People Who Use Poor Grammar. Hereââ¬â¢s Way,â⬠in July, 2012 issue of Harvard Business Review, I would like to make some recommendations about whether or not to add grammar testing to ABC Companyââ¬â¢s hiring practice to improve ABC Companyââ¬â¢s hiring standards. In Kyleââ¬â¢ article, he writes people who make grammar mistakes ââ¬Å"deserve to be passed over for a jobâ⬠and he puts a mandatory grammar test in hiring process. To better assess a grammar test to be a must in hiring people, Kyle emphasized the importance of grammar by giving the following reasons: 1. Grammar is relevant in all companies, not only limited to writing companies. 2. Grammar signifies peopleââ¬â¢s business sense 3. Grammar reflects oneââ¬â¢s attention to details From the reasons showed by Kyle, grammar is really important in business. Not only does it leave the first impression of a company on the mass, but also it shows an employeeââ¬â¢s sense to details. With the development of modern society, the competition among companies is more and more fierce. One detail could help a company to differentiate from others and make profits. To adapt to the intense competition, companies needs to recruit those who are qualified in skills and in details. The current hiring practice in ABC Company is limited in identifying personââ¬â¢s character on details. Grammar testing could be a litmus test that helps justify whether a person is detail-oriented to be qualified for the job. As Kyle mentions, ââ¬Å"â⬠¦details are everythingâ⬠, I would recommend the ABC Companyà to add grammar testing in hiring practices to better hiring more both skill-qualified and detailed-oriented people.
Subscribe to:
Posts (Atom)