PC Review Forums PC Review News Editions PC Flank challenges firewalls!

Reply
 
Thread Tools Rate Thread
Old 03-06-2002, 10:35 AM   #1
muckshifter
Captain Crunchie
Super Moderator
 
muckshifter's Avatar
 
Join Date: Mar 2002
Location: In a Hovel
Posts: 15,908
Send a message via MSN to muckshifter
Trader Rating: (1)
Default PC Flank challenges firewalls!

Recently we, here at PC Flank, have released the Stealth Test that gives opportunity to determine if your firewall is successful in making your computer "stealthed". The "stealthed" system is invisible to others on the Internet, so it is harder for intruders to "detect" such system and thus far harder to attack. Indeed, "stealthed" system is not absolutely safe system, and we should not overrate it, but it is the first barrier made by firewall to stop intruders and it is better if this barrier works.

The Stealth test uses five scanning techniques: TCP ping, TCP NULL scanning, TCP FIN scanning, TCP XMAS scanning and UDP scanning. Using each technique the test creates a packet and sends it to port number 1 of your system. If your firewall drops the packet and does not send any response it will mean that your computer is "stealthed". Otherwise if there is any response from your system it will mean that your computer is "non-stealthed" and your firewall has failed this test.

Here is the descriptions of each packet:
  • TCP ping packet
    Description: An uniquely configured TCP packet with the ACK flag
  • TCP NULL packet
    Description: An uniquely configured TCP packet that contain a sequence number but no flags
  • TCP FIN packet
    Description: The TCP FIN scanning is able to pass undetected through most personal firewalls, packet filters, and scan detection programs. The scan utilizes TCP packet with the FIN flag
  • TCP XMAS packet
    Description: The TCP packet with the URG, PUSH(PSH) and FIN flags
  • UDP packet
    Description: An uniquely configured UDP packet with empty datagram.
Selected tools
We have selected and downloaded eight leading pesonal firewalls for our test. Each firewall was tested with default settings.

... and the results are ...

Why not discuss this on the forum?
__________________
I'm not grouchy by nature, it takes constant effort.



Inside every older person is a younger person wondering, "What the hell happened?"
muckshifter is offline   Reply With Quote
Old 15-08-2005, 11:59 PM   #2
TECHGUNS
Senior Member
 
Join Date: Aug 2005
Posts: 266
Trader Rating: (0)
Default

PC FLANK IS MY FAVORITE. HAVE BEEN USING IT TO TEST SECURITY ON ALL MY FRIENDS PC'S FOR ABOUT 4 YEARS. I LIKE THE SYGATE TEST, SHIELDS UP, AND NORTONS FIREWALL TEST. I DONT LIKE THE NORTONS FIREWALL BUT THEY HAVE A GOOD FIREWALL TEST. SYGATE FIREWALL IS WHAT I USE WITH PROXOMITRON A LOCAL PROXY FILTER.
DONT TEST PUBLIC PROXYS WITH FIRE WALL TESTING BECAUSE THEY MIGHT THINK HACK ATTACK.
TRY PROXY TESTING SITES LIKE http://stealthtests.lockdowncorp.com/ IF YOU USE PUBLIC PROXYS.
YOU CAN GOOGLE "MY IP" LOTS OF SITES OUT THERE FOR TESTING PUBLIC PROXYS.
TECHGUNS is offline   Reply With Quote
Old 16-08-2005, 12:28 AM   #3
crazylegs
Member Extraordinairre
 
crazylegs's Avatar
 
Join Date: Dec 2004
Location: Out There
Posts: 2,393
Trader Rating: (0)
Default

This just reinforces what i already knew, that my ZoneAlarm Security Suite is the business and coupled with my Hardware firewall keeps me very well protected.....Nice Info there Muck's.....
__________________


AMD Athlon64 3200+......Asus kv8 pro.......Corsair 1gig xms 3200.
Sapphire ATI Radeon X1950Pro 512MB GDDR3 .....Hitachi 250GB 16mb Cache
Tagan 600watt Dual Engine PSU.....
crazylegs is offline   Reply With Quote
Old 16-08-2005, 01:51 AM   #4
TECHGUNS
Senior Member
 
Join Date: Aug 2005
Posts: 266
Trader Rating: (0)
Default

YOU CAN PASS ALL THESE TEST AND THE HACKERS TROJANS CAN STILL GET IN USING AUTOMATION LIKE JAVA AND ACTIVEX SO USE AN ALTERNATIVE BROWSER WITH JAVA TURNED OFF. WHEN YOU NEED JAVA JUST USE IE WITH JAVA ON. EVEN BETTER SANDBOX YOUR BROWSER "SANDBOXIE" HTTP://WWW.SANBOXIE.COM I USE TO USE THE FREE SURFINGARD SANDBOX BUT IT SEEMED TO HAVE A LOT OF PROBLEMS AND YOU CANT DOWNLOAD A FREE VERSION ANYMORE.

BROWSERS KMELEON AND FIREFOX WORK GOOD. SURF SAFE
TECHGUNS is offline   Reply With Quote
Old 16-08-2005, 08:07 AM   #5
Ian Cunningham
Rocket Scientist
Administrator
 
Ian Cunningham's Avatar
 
Join Date: Feb 2002
Location: Manchester, UK
Posts: 11,523
Trader Rating: (0)
Default

Wow, I didn't expect Norton to do that bad! I'm using Kerio Personal Firewall at the moment, which I am quite pleased with - although I am a big ZoneAlarm fan!
__________________
PC Review - Editor-in-Chief
Ian Cunningham is offline   Reply With Quote
Old 16-08-2005, 09:55 AM   #6
muckshifter
Captain Crunchie
Super Moderator
 
muckshifter's Avatar
 
Join Date: Mar 2002
Location: In a Hovel
Posts: 15,908
Send a message via MSN to muckshifter
Trader Rating: (1)
Exclamation

Nothing will help the unwary from ... "oh, that looks good, 'click click' ... WTFliping heck happened there then?" ... to late.

TECHGUNS, please fix you 'caps lock' ... it is very hard on the eyes to read, and, is really considered shouting.

__________________
I'm not grouchy by nature, it takes constant effort.



Inside every older person is a younger person wondering, "What the hell happened?"
muckshifter is offline   Reply With Quote
Old 16-08-2005, 10:44 AM   #7
Me__2001
Internet Junkie
 
Me__2001's Avatar
 
Join Date: Apr 2004
Location: Hertfordshire, UK
Posts: 4,072
Trader Rating: (2)
Default

i have NIS and it ust passed all of the tests , but then i have taken a long time to get it right
__________________
I'm out of bed and dressed, what more do you want?

I always take life with a grain of salt, ... a slice of lemon, ...and a shot of tequila

I used to have an open mind but my brains kept falling out

One more step to enlightenment ... but which way ?



Me__2001 is offline   Reply With Quote
Old 16-08-2005, 10:50 AM   #8
Adywebb
Captain Boinc
Super Moderator
 
Adywebb's Avatar
 
Join Date: Jan 2005
Location: Shropshire
Posts: 5,049
Trader Rating: (4)
Default

Remember those tests were done in 2002 - NIS may have improved things by now!
Quote:
Originally Posted by Me__2001
i have NIS and it ust passed all of the tests , but then i have taken a long time to get it right
Adywebb is offline   Reply With Quote
Old 16-08-2005, 10:58 AM   #9
Me__2001
Internet Junkie
 
Me__2001's Avatar
 
Join Date: Apr 2004
Location: Hertfordshire, UK
Posts: 4,072
Trader Rating: (2)
Default

just noticed that Adywebb, that may be why
__________________
I'm out of bed and dressed, what more do you want?

I always take life with a grain of salt, ... a slice of lemon, ...and a shot of tequila

I used to have an open mind but my brains kept falling out

One more step to enlightenment ... but which way ?



Me__2001 is offline   Reply With Quote
Old 16-08-2005, 12:13 PM   #10
Adywebb
Captain Boinc
Super Moderator
 
Adywebb's Avatar
 
Join Date: Jan 2005
Location: Shropshire
Posts: 5,049
Trader Rating: (4)
Default

Weird isn't it how after 3 years a thread suddenly appears again!!
Adywebb is offline   Reply With Quote
Reply



Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off