Pennsylvania Firearm Owners Association
Page 1 of 2 12 LastLast
Results 1 to 10 of 13
  1. #1
    Join Date
    Feb 2021
    Location
    Reading, Pennsylvania
    Posts
    1,559
    Rep Power
    21474841

    Default PA Courts Website Hit By Cyberattack

    Working in the system security adjacent sector, every single time I have to deal with IT, NOC, or any "system engineer" the amount of incompetence is not only astounding, but also terrifying. I keep thinking "if my life were to actually rely on these people, i'd be genuinely scared". Every one of them barely knows what they're doing, and if something goes wrong, no one knows what to do. It's like the guy that cleans the furnace, but doesn't actually know how the furnace functions. He knows what he was trained to do, and nothing else.

    https://patch.com/pennsylvania/acros...it-cyberattack

    HARRISBURG, PA — The Pennsylvania Courts website was hit by a cyberattack over the weekend, disabling parts of the site and reigniting security concerns.

    The incident was described as a "denial of service" attack, and involved actors flooding the network with traffic until the site was unable to respond, preventing access for real users.

    Officials said they did not believe any court data was compromised, and the site remains open to the public for use.

    "Our court information technology and executive team is working closely with law enforcement including the CISA, the U.S. Department of Homeland Security, and the FBI to investigate the incident," Pennsylvania Supreme Court Justice Debra Todd said.

    It is not clear who is responsible for the attack or what their specific motivation might have been.

    Certain services remain impacted on the site, including the PACFile feature, docket sheets, PAePay, and the Guardianship Tracking System, officials said.

    The investigation is ongoing. More information will be provided as it becomes available.
    iAnal

  2. #2
    Join Date
    May 2006
    Location
    127.0.0.1, Pennsylvania
    (Lancaster County)
    Posts
    20,358
    Rep Power
    21474874

    Default Re: PA Courts Website Hit By Cyberattack

    I wouldn't lay this on the IT guys, but on the bean counters that probably denied multiple requests to upgrade their edge facing hardware to something that could hold up to a DDOS. Bean counters don't like to give money to IT unless they can prove it's actually needed. Next up, the SOE declaration so they can spend millions on short notice to replace the hardware that should have been replaced 20 years ago.
    Rules are written in the stone,
    Break the rules and you get no bones,
    all you get is ridicule, laughter,
    and a trip to the house of pain.

  3. #3
    Join Date
    Oct 2006
    Location
    Brookville, Pennsylvania
    (Jefferson County)
    Age
    51
    Posts
    20,111
    Rep Power
    21474874

    Default Re: PA Courts Website Hit By Cyberattack

    Quote Originally Posted by streaker69 View Post
    I wouldn't lay this on the IT guys, but on the bean counters that probably denied multiple requests to upgrade their edge facing hardware to something that could hold up to a DDOS. Bean counters don't like to give money to IT unless they can prove it's actually needed. Next up, the SOE declaration so they can spend millions on short notice to replace the hardware that should have been replaced 20 years ago.
    I wouldn't blame the bean counters either. Some DDoS attacks can only be stopped by disconnecting the server from the network.

    Even with that, the connection itself will still be flooded, but the server itself will not be corrupted. The catch is, you have to be there right beside the server when it happens to pull the network cable out.

    Whatever IP they are attacking will still have a flood of traffic until the attacker(s) feels they've done the damage.
    RIP: SFN, 1861, twoeggsup, Lambo, jamesjo, JayBell, 32 Magnum, Pro2A, mrwildroot, dregan, Frenchy, Fragger, ungawa, Mtn Jack, Grapeshot, R.W.J., PennsyPlinker, Statkowski, Deanimator, roland, aubie515

    Don't end up in my signature!

  4. #4
    Join Date
    Feb 2007
    Location
    next to my neighbor, Pennsylvania
    Posts
    13,643
    Rep Power
    21474867

    Default Re: PA Courts Website Hit By Cyberattack

    Guys, GUYS, It's trumps fault.
    FJB

  5. #5
    Join Date
    Feb 2021
    Location
    Reading, Pennsylvania
    Posts
    1,559
    Rep Power
    21474841

    Default Re: PA Courts Website Hit By Cyberattack

    Quote Originally Posted by knight0334 View Post
    I wouldn't blame the bean counters either. Some DDoS attacks can only be stopped by disconnecting the server from the network.

    Even with that, the connection itself will still be flooded, but the server itself will not be corrupted. The catch is, you have to be there right beside the server when it happens to pull the network cable out.

    Whatever IP they are attacking will still have a flood of traffic until the attacker(s) feels they've done the damage.
    DDOS mitigation is possible by just having a fatter pipe. Companies like cloudflare offer such protection, because they have such massive bandwidth available, as well as mitigation methods that involve routing traffic around the affected IP. Everyone in IT has heard of cloudflare, but few know how their process actually works. I had to deal with months of DDOS attacks where i basically built myself a mini cloudflare involving multiple servers around the country and just routing traffic to a different ip or server when it gets hit. I also have a cloudflare account and utilize their free and instant a-record and dns services so i don't have to wait for dns changes to propagate.

    But that's the thing, I live this industry, after i go home, i do it more. Most IT guys don't.
    iAnal

  6. #6
    Join Date
    Jan 2007
    Location
    Boyertown, Pennsylvania
    (Berks County)
    Posts
    232
    Rep Power
    2406653

    Default Re: PA Courts Website Hit By Cyberattack

    This System Engineer listened to his IA guy. Period. Tell me what to bid, I*d say. All that said, IA efforts broke the system many times. No hacker, disgruntled employee or foreign govt got past the cryptos. Imagine that.

  7. #7
    Join Date
    Oct 2006
    Location
    Brookville, Pennsylvania
    (Jefferson County)
    Age
    51
    Posts
    20,111
    Rep Power
    21474874

    Default Re: PA Courts Website Hit By Cyberattack

    Quote Originally Posted by JaySmith View Post
    DDOS mitigation is possible by just having a fatter pipe. Companies like cloudflare offer such protection, because they have such massive bandwidth available, as well as mitigation methods that involve routing traffic around the affected IP. Everyone in IT has heard of cloudflare, but few know how their process actually works. I had to deal with months of DDOS attacks where i basically built myself a mini cloudflare involving multiple servers around the country and just routing traffic to a different ip or server when it gets hit. I also have a cloudflare account and utilize their free and instant a-record and dns services so i don't have to wait for dns changes to propagate.

    But that's the thing, I live this industry, after i go home, i do it more. Most IT guys don't.
    I think the state has some 1Gbps TLS(ethernet) circuits in Harrisburg for the PA Courts, at minimum(our 10G/100G availability has just come available in the last 3-5 years - ask me how I know.). I'm not sure how many circuits they have, and how Harrisburg's arrangement is set up, like whether as redundant or roll-over/diverse. All the county courts and magistrate offices in my work district have 100Mbps ethernet circuits, some oddballs with lower traffic have just 45Mb T3/50Mb OC1 or 10Mb circuits(although, I think I upgraded those in last couple years).

    Most of the traffic on their connections is between court houses, magistrates, law firms, and official police queries. Not much is really used by the common folks to look up court dockets.
    RIP: SFN, 1861, twoeggsup, Lambo, jamesjo, JayBell, 32 Magnum, Pro2A, mrwildroot, dregan, Frenchy, Fragger, ungawa, Mtn Jack, Grapeshot, R.W.J., PennsyPlinker, Statkowski, Deanimator, roland, aubie515

    Don't end up in my signature!

  8. #8
    Join Date
    Apr 2013
    Location
    Greensburg, Pennsylvania
    (Westmoreland County)
    Posts
    408
    Rep Power
    6688312

    Default Re: PA Courts Website Hit By Cyberattack

    Maybe we need to pay more taxes so our officials can afford to keep our information secure. It is tax season...perhaps we should make extra donations to the PA Dept of Revenue this year

  9. #9
    Join Date
    Dec 2006
    Location
    Bucks, Pennsylvania
    Posts
    13,646
    Rep Power
    21474867

    Default Re: PA Courts Website Hit By Cyberattack

    Test run for the emergency that will force a reluctant Democrat Regime to cancel the elections this year.
    Attorney Phil Kline, AKA gunlawyer001@gmail.com
    Ce sac n'est pas un jouet.

  10. #10
    Join Date
    Nov 2017
    Location
    New Tripoli, Pennsylvania
    (Lehigh County)
    Posts
    2,373
    Rep Power
    21474845

    Default Re: PA Courts Website Hit By Cyberattack


Page 1 of 2 12 LastLast

Similar Threads

  1. The Supreme courts not being for pro 2A!!!
    By chrmm22sr in forum General
    Replies: 11
    Last Post: October 19th, 2013, 01:59 AM
  2. Courts got one right
    By MrBi11 in forum General
    Replies: 0
    Last Post: November 26th, 2009, 08:43 AM
  3. Carry in courts
    By nlcrsn in forum General
    Replies: 54
    Last Post: February 17th, 2008, 03:35 AM
  4. Magesterial Courts
    By Statkowski in forum General
    Replies: 2
    Last Post: April 3rd, 2007, 10:25 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •