free

News

collapse

User Info

 
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

* Recent Posts

NOTICE OF PARKING ENFORCEMENT CHANGES by Huntsman
[June 19, 2025, 05:22:50 pm]


Re: Stopping by by Sinister
[June 08, 2025, 01:58:04 pm]


Re: Stopping by by Ehks
[June 04, 2025, 12:25:17 am]


Re: Rest in peace by Stefanrsb
[June 02, 2025, 03:38:02 am]


Re: [SA:MP]House of Sforza | The Elite Power | Estd. 2006 | LS - LV by Stefanrsb
[June 02, 2025, 03:09:22 am]


Re: The Soprano Family | Royal Loyalty by Stefanrsb
[June 02, 2025, 03:00:31 am]


Re: The Gvardia Family || San Fierro's Main Power || Best criminal group of 09/10/11 by Stefanrsb
[June 02, 2025, 02:47:01 am]


Re: BALLAS | In memory of INFERNO 9 and NBA by Stefanrsb
[June 02, 2025, 02:31:29 am]


Re: Count to 1,000,000. by Stefanrsb
[June 02, 2025, 02:15:04 am]


Re: Stopping by by Traser
[June 01, 2025, 10:23:13 pm]


Re: Stopping by by Old Catzu
[May 18, 2025, 07:27:06 pm]


Re: Stopping by by TheRock
[May 18, 2025, 06:44:49 am]

* Who's Online

  • Dot Guests: 514
  • Dot Hidden: 0
  • Dot Users: 0

There aren't any users online.

* Birthday Calender

July 2025
Sun Mon Tue Wed Thu Fri Sat
1 2 3 4 5
6 7 8 [9] 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30 31

Annual Security Report, 2015

Teddy · 4289

0 Members and 1 Guest are viewing this topic.

Offline TeddyTopic starter

  • Orc
  • *****
    • Posts: 9161
  • "I'm on top of the world because of you."
  • With us since: 05/02/2011
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
on: January 28, 2016, 07:11:24 am
Hi,

We've never published these before... or really ever kept track or dug into it... but I believe in transparency so I'll leave this here. These are based on logged incidents from when we moved to our newest server until December 31st, 2015.

Main Dedicated Server
Intrusion Attempts: 368
Successful intrusions: 0

Virtual Servers
Intrusion Attempts: 283/avg per VM (mostly targeting Linux VMs)
Successful intrusions: 3

The IV:MP & SA:MP virtual machine were both successfully breached by a Chinese bot net within the first week of their setup before more advanced security settings were put into place. The bot net turned the servers into zombies and utilized them to carry out malicious activity for an entire night before it was detected and rectified. The source of this problem was human error on our end.

The database virtual machine was breached by a Russian bot net in Autumn of 2015, the breach was locked out within less than a second by intrusion detection software. The account accessed had no permission to access any data, the account was a service used for starting and stopping a third-party monitoring software and it's permission was very very limited.

There have been no breaches of databases in 2015.

All virtual machines have been updated on a regular schedule leading to the installation of over 2,500 security related patches (Linux total only). The servers are all responding under 80% usage of RAM, CPU and disk space; the optimal target range for server best performance.

We've had 8 server caused/related outages (outages longer than 3 minutes) leading to a total downtime of 6 hours and 32 minutes.

The average up-time is 43.4 days (Linux totals only).

- Teddy



Offline [NP]Monte Montague

  • The
  • Hero
  • ****
    • Posts: 3895
    • monte_montague
  • With us since: 18/05/2009
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
    • Parallel Universe Co-Operative Gaming Community
  • SA:MP: [NP]Monte.Montague
Reply #1 on: January 28, 2016, 07:19:48 am
What of any phishing attempts etc?

ParUni.NET - The Co-Operative Gaming Community


Offline TeddyTopic starter

  • Orc
  • *****
    • Posts: 9161
  • "I'm on top of the world because of you."
  • With us since: 05/02/2011
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
Reply #2 on: January 28, 2016, 07:22:03 am
What of any phishing attempts etc?

None that have targeted the dedicated servers or it's virtual machines themselves; as this report is about. In terms of game servers themselves, I only know of one recently targeting SA:MP.



Offline Blommen

  • Regular
  • **
    • Posts: 89
  • Division Founder / Hawk Leader
  • With us since: 02/11/2015
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYears
  • SA:MP: Terry_Hawk
  • Minecraft: Blommen
  • Discord: Terry#8937
Reply #3 on: January 28, 2016, 09:00:47 am
Nice, keep the good work going Teddy!  :D



Offline eymas

  • That's all, folks!
  • SA:MP Valar
  • ***
    • Posts: 2635
    With us since: 27/11/2011
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
  • SA:MP: Leon Arallian
  • Minecraft: eymas
Reply #4 on: January 28, 2016, 11:15:38 pm
Always the eastern side that wants to zombify servers for botnets  :uhm:



Offline ahmedXD

  • BaLLaS
  • Regular
  • **
    • Posts: 483
    With us since: 27/08/2014
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
  • SA:MP: Mark_levion
Reply #5 on: January 30, 2016, 09:50:29 am
Their intentions is to steal the server scripts maybe.
I mean its rare that Russians or French hackers attempt to hack Argonath server.



Offline TeddyTopic starter

  • Orc
  • *****
    • Posts: 9161
  • "I'm on top of the world because of you."
  • With us since: 05/02/2011
    YearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYearsYears
Reply #6 on: January 30, 2016, 08:27:12 pm
Their intentions is to steal the server scripts maybe.
I mean its rare that Russians or French hackers attempt to hack Argonath server.

They likely have no idea what Argonath RPG is, they're just bot nets that try and infect as many machines as possible in order to grow their numbers. Most of them appear to be bot nets.



 


free
free
SimplePortal 2.3.7 © 2008-2025, SimplePortal