4.1. The Bad Guys4.1.1. Opportunists, Thieves, and Vandals4.1.2. Professionals4.1.3. Disgruntled Current and Former Employees and Contractors4.1.4. Robots and Worms4.2. Anatomy of an Attack: The Five Ps4.2.1. Probe4.2.1.1. Mining the Web4.2.1.2. Portscans and software version-mapping4.2.1.3. Automated vulnerability scanners4.2.1.4. Web page scanners4.2.1.5. Other probe tools4.2.2. Penetrate4.2.2.1. Authentication grinding4.2.2.2. Buffer overflows4.2.2.3. Application behavior boundary flaws4.2.2.4. System configuration errors4.2.2.5. User input validation problems4.2.3. Persist4.2.4. Propagate4.2.5. Paralyze4.3. Denial-of-Service4.4. IDS Evasion4.5. Sites of Interest