Gnutella Forums  

Go Back   Gnutella Forums > Gnutella News and Gnutelliums Forums > General Gnutella / Gnutella Network Discussion
Register FAQ The Twelve Commandments Members List Calendar Arcade Find the Best VPN Today's Posts

General Gnutella / Gnutella Network Discussion For general discussion about Gnutella and the Gnutella network.
For discussion about a specific Gnutella client program, please post in one of the client forums above.


Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old May 28th, 2008
Apprentice
 
Join Date: May 18th, 2008
Posts: 9
lapsy is flying high
Default Gnutella Security

Hey

I came across some Gnutella security loopholes recently. One of these loopholes which I found interesting, was a worm which replies positively to most of the queries it get. Suppose someone searches for itunes and it will reply with itunes.exe (basically building answers through the search string). If a user gets tricked into downloading this file and he executes it, the worm will take control of his application say limewire and this application will also start exhibiting worm behavior.

How big a problem do you think this loop hole can pose to Gnutella.

Lapsy
Reply With Quote
  #2 (permalink)  
Old May 28th, 2008
Remoc's Avatar
TexAz
 
Join Date: July 4th, 2006
Location: Sweating in Az.
Posts: 2,906
Remoc has a spectacular aura about
Default

Well Lapsy I hate to tell you this but this is Old news. The MAFIAA aka the (RIAA & MPAA) actually hire organizations to Flood the Network with Fake Files, Viruses, Worms, and Spam in an Attempt to discourage the use of P2P. I would suggest Downloading ONLY Audio, Video, and Books from the Gnutella Network. If you are interested in Games or Programs DON'T use this Network. Here is a list of File Extensions to Filter OUT to help you stay semi safe amd other suggestions and Info.


Try these suggestions.

What I have done that works really well is to go to Tools > Options > Filter > Keywords and then add these file extensions: .wma, .exe, .rar, .html, .com, .zip, .mov. Be sure to tick apply and O.K. There are a ton of fake and corrupt files with these extensions. I will only download mp3 files that are larger than 2000kb - 3000kb. Also make sure thay have a bitrate.

Sticky: How to find music ( 1 2 3 ... Last Page)

LOTR explains where the Fake Files are coming from and why.

Fake files showing up in search results

Hope this Helps.
__________________
I Don't Suffer From Insanity, I Enjoy Every Minute of it





Reply With Quote
  #3 (permalink)  
Old May 28th, 2008
Apprentice
 
Join Date: May 18th, 2008
Posts: 9
lapsy is flying high
Default

that is true, but you must appreciate the fact that most of the users of Gnutella would be naive users. They are probably not taking such precautions and thus it becomes important to protect users against such kind of worm attacks
Reply With Quote
  #4 (permalink)  
Old May 28th, 2008
Remoc's Avatar
TexAz
 
Join Date: July 4th, 2006
Location: Sweating in Az.
Posts: 2,906
Remoc has a spectacular aura about
Default

Right you are my friend, but LW has no way to Police the Network as there are no Central Servers. They have absolutly no control over what is being Shared on the Network.
For all of the "Naive" members that you speak of, Research, Read and just become aware of the Dangers of File Sharing. It is also Very Illegal.
__________________
I Don't Suffer From Insanity, I Enjoy Every Minute of it





Reply With Quote
  #5 (permalink)  
Old May 28th, 2008
Apprentice
 
Join Date: May 18th, 2008
Posts: 9
lapsy is flying high
Default

No central servers, that would be quite wrong i guess.. there are GWebCaches which to some extent are central servers and there are companies which are maintaining these central servers. So, why can't they have central servers to monitor the traffic.
Reply With Quote
  #6 (permalink)  
Old May 28th, 2008
Remoc's Avatar
TexAz
 
Join Date: July 4th, 2006
Location: Sweating in Az.
Posts: 2,906
Remoc has a spectacular aura about
Default

Lapsy, Sorry I left so abruptly this morning, (was morning for me anyway)I Had to go to work . To continue, Correct me if I'm wrong, but GWebCaches are used for Connecting Peers to other Peers, NOT sorting or monitoring Millions of files to determine what's safe or not.
__________________
I Don't Suffer From Insanity, I Enjoy Every Minute of it





Reply With Quote
  #7 (permalink)  
Old May 28th, 2008
Apprentice
 
Join Date: May 28th, 2008
Posts: 9
Mullet35 is flying high
Talking heard something new

I have just recently heard of a p2p program that has a built in scan prior to downloading files and it is a reliable source for programs the whole thing is set up as a protest to the software companies charging so much for their software you can app still get mus and vids to but it is more focused on programs when I find out more I wil post.
Reply With Quote
  #8 (permalink)  
Old May 28th, 2008
Blackhorse 70V's Avatar
Valued Member
 
Join Date: January 31st, 2008
Location: San Francisco
Posts: 763
Blackhorse 70V is a great assister to others; your light through the dark tunnel
Default Peer Guardian

Many people use Peer Guardian when on P2P networks. It is available for free from download.com. I've used it for years.

You can read user reviews and download it from:

PeerGuardian - Free software downloads and reviews - CNET Download.com
Reply With Quote
  #9 (permalink)  
Old May 28th, 2008
Apprentice
 
Join Date: May 18th, 2008
Posts: 9
lapsy is flying high
Default

Hey Remoc
That is correct but my point is if they can maintain GWebCache server then why not to have some servers just to monitor the network for malicious activities by peers!
Reply With Quote
  #10 (permalink)  
Old May 28th, 2008
Remoc's Avatar
TexAz
 
Join Date: July 4th, 2006
Location: Sweating in Az.
Posts: 2,906
Remoc has a spectacular aura about
Default

Well thats up to LW. If you want to pose that question to them, Go Here
LimeWire Forums. Some of the Developers hang out over there sometimes.
__________________
I Don't Suffer From Insanity, I Enjoy Every Minute of it





Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 12:34 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 ©2011, Crawlability, Inc.

Copyright © 2020 Gnutella Forums.
All Rights Reserved.