Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Networking Forum > Security and Firewalls
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Security and Firewalls Protecting you against unwanted people and programs

Reply
 
LinkBack Thread Tools
Old 04-27-2009, 03:33 AM   #1 (permalink)
Registered User
 
Join Date: Apr 2009
Posts: 2
OS: Windows XP SP3|Kubuntu 8.04


Constantly listening on a port - Security issue?

Hello everyone,

I am a hobbyist coder and am writing an app for basic communications over the web. It consists of a program that listens on a port for a info and a program to send a very particular string.

Now the program that listens only reacts when it receives this certain string but it is constantly listening on a certain TCP port.

I know virtually nothing about networking.

How big of a security threat is this?

As it is just for a learning experience I can provide the source if requested.

Thanks – John-Paul
godsstigma is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 04-27-2009, 04:02 AM   #2 (permalink)
Registered User
 
Join Date: Apr 2008
Posts: 74
OS: Win XP Home SP2


Re: Constantly listening on a port - Security issue?

It can be huge. But that's why people use firewalls, to close those ports. Listening ports just wait to receive a signal to "go." Windows has open ports all the time though... just go to command prompt and type netstat -a to see.
systemErr is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 04-27-2009, 08:47 AM   #3 (permalink)
Manager, Networking Forums
 
johnwill's Avatar
 
Join Date: Sep 2002
Location: S.E. Pennsylvania, US
Posts: 41,580
OS: Windows 7, XP-Pro, Vista, Linux


Blog Entries: 1
Re: Constantly listening on a port - Security issue?

Truthfully, if your program doesn't have things like buffer overflow vulnerabilities, it's not that big a threat. After all, that's how any server application runs, right?
__________________
If TSF has helped you, Tell us about it! or Donate to help keep the site up!

Microsoft MVP - Windows Desktop Experience
johnwill is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 04-27-2009, 02:35 PM   #4 (permalink)
Registered User
 
Join Date: Apr 2009
Posts: 2
OS: Windows XP SP3|Kubuntu 8.04


Re: Constantly listening on a port - Security issue?

Quote:
Originally Posted by systemErr View Post
It can be huge. But that's why people use firewalls, to close those ports. Listening ports just wait to receive a signal to "go." Windows has open ports all the time though... just go to command prompt and type netstat -a to see.
Ok, so I also use RealVNC that is constantly listening on a port for a connection. Isn' t this just as vulnerable?


Quote:
Truthfully, if your program doesn't have things like buffer overflow vulnerabilities, it's not that big a threat. After all, that's how any server application runs, right?
I am using a function library for the TCP connections that was written in C++.
I know that C++ is notorious for buffer overflow. I do not know C++. what do you think?
godsstigma is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 04-28-2009, 02:17 PM   #5 (permalink)
Manager, Networking Forums
 
johnwill's Avatar
 
Join Date: Sep 2002
Location: S.E. Pennsylvania, US
Posts: 41,580
OS: Windows 7, XP-Pro, Vista, Linux


Blog Entries: 1
Re: Constantly listening on a port - Security issue?

It's what is called an "attack surface". The more ports you open, the larger the attack surface, and the easier it is for an attacker to find a bug that allows him in the door. The trick is to minimize the attack surface as much as possible. Obviously, if you want the server functionality, you can't eliminate it totally.
__________________
If TSF has helped you, Tell us about it! or Donate to help keep the site up!

Microsoft MVP - Windows Desktop Experience
johnwill is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 10:12 AM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85