OcUK DDoS attack - £10,000 reward

Status
Not open for further replies.
Soldato
Joined
22 Mar 2008
Posts
11,670
Location
London
All of those things basically.

You could keep adding more internet connections to your present server and setting up server clusters to keep abreast of the processing and bandwidth requirements but it would quickly become very costly.

Or you can work with the upstream provider and block off the connections / data before it ever gets here.
 
Man of Honour
Joined
13 Oct 2006
Posts
91,475
Well yeah but I was replying to the second part of his post as to if increasing bandwidth, etc. would help - theres much more effective ways to manage a DDOS attack.
 

Deleted member 651465

D

Deleted member 651465

If I knew who it was I'd be currently emailing Spie and striking this pose..


 
Man of Honour
Joined
30 Jun 2005
Posts
9,515
Location
London Town!
So its impossible to find out who is carrying out the attacks unless someone tells you who is the person?

Basically, you need to find the person sending the control commands, as they'll never actually be part of the attack themselves that's devilishly difficult.

Best option is...

(if they're tragicomically stupid) get yourself infected by the botnet carrying out the attack, monitor your inbound traffic and watch for the control signal. Only works if you can get yourself infected (pretty hard if you want to trace a specific attack) and they're utterly dumb enough not to hide the source of the control commands (quite common actually, most people behind this are just script kiddies after all with no real idea)
 
Man of Honour
Joined
30 Jun 2005
Posts
9,515
Location
London Town!
Or you can work with the upstream provider and block off the connections / data before it ever gets here.

But in a DDOS attack you're dealing with multiple clients all mixed in with genuine traffic. Blocking only the attack when it's so diverse is hard, even for the upstream provider, we do it with specialized equipment designed for this and similar tasks but it costs shedloads of money so most providers aren't prepared to do it yet.
 
Soldato
Joined
24 Apr 2006
Posts
6,363
Location
SE England
So its impossible to find out who is carrying out the attacks unless someone tells you who is the person?

It is near impossible as said many times in this thread, the nature of a DDoS attack means the attacker could start these attacks in a number of locations via a number of proxies/a public library computer/a hacked wifi connection.

There is so much talk in this thread of server side protection but really that will only help to a certain extent. What needs to be addressed are these compromised boxes out there and ways to prevent computers turning into drones.
 
Soldato
Joined
12 Jun 2005
Posts
6,345
Location
St Albans
Was wondering why the shop and forums have been playing up, sorry to hear about the problems :(. Some people need to seriously get a life. If there was something I could do to help I would. The amount of time I spend reading these forums is pretty scary :O. Good luck and keep us updated on what's going on :).
 
Permabanned
Joined
14 Nov 2002
Posts
5,555
Location
Kent
It is near impossible as said many times in this thread, the nature of a DDoS attack means the attacker could start these attacks in a number of locations via a number of proxies/a public library computer/a hacked wifi connection.

Agreed, this thread is like a broken record now... :( Now, about this willy bleaching... :D
 
Man of Honour
Joined
17 Oct 2002
Posts
159,732
I've never really understood the hatred. If you dislike a particular shop that much surely the best course of action is to simply shop elsewhere :confused:
 
Soldato
Joined
24 Apr 2006
Posts
6,363
Location
SE England
Basically, you need to find the person sending the control commands, as they'll never actually be part of the attack themselves that's devilishly difficult.

Best option is...

(if they're tragicomically stupid) get yourself infected by the botnet carrying out the attack, monitor your inbound traffic and watch for the control signal. Only works if you can get yourself infected (pretty hard if you want to trace a specific attack) and they're utterly dumb enough not to hide the source of the control commands (quite common actually, most people behind this are just script kiddies after all with no real idea)

Sadly it isn't as simple as this otherwise many botnet owners would be behind bars by now. There will be multiple smaller botnets which gives out the attack commands to the main set of attacking drones, these smaller groups could go back X amount of times all around the globe. I think that luck plays a big part in taking down these script kiddie idiots out there.
 
Last edited:
Status
Not open for further replies.
Back
Top Bottom