4 ms·
So I'm wondering, what are the implications of this ? Someone is controlling a powerful enough botnet to do this. How powerfull is it really ? What else can
by zer0gravity 10y ago
So I'm wondering, what are the implications of this ?
Someone is controlling a powerful enough botnet to do this.
How powerfull is it really ?
What else can it do ?
Was this just a message or a test ? Or both ?
What would happen if they would point it to google's nameservers ?
What should we expect next ?
- tyingq 10y agoFrom this krebsonsecurity.com post: https://krebsonsecurity.com/2016/10/source-code-for-iot-botnet-mirai-released/ https://krebsonsecurity.com/2016/10/source-code-for-iot-botn... According to research from security firm Level3 Communications, the Bashlight botnet currently currently is responsible for enslaving nearly a million IoT devices and is in direct competition with botnets based on Mirai. “Both [are] going after the same IoT device exposure and, in a lot of cases, the same devices,” So, roughly 1 million IoT devices. And the source code for Mirai is freely available, so there's a DIY kit for anyone to use.
- neom 10y agoIt's complicated because the internet is a complicated(and I'm no expert)- but, it's not good, but it's not insurmountable. The big issues today are: lots of network attached compute, lots of types of traffic, highly highly distributed network. There are numerous ways of mitigating DDoS, today a lot of it is via BGP route announcement[1] - although we've seen folks using BGP in questionable ways to mitigate DDoS recently[2]. As more and more of the internet becomes software defined (like SD WAN sees large global rollout)[3] more and more granular but non-disruptive control will be enabled. To answer your question about google, their DNS is probably resilient enough to deal with a pretty huge attack but who knows really -- In my dream world we get some good neural networks built and deployed to the edge watching for unusual traffic patterns and disrupt them. It used to be biggest pipes win, I don't know that will continue to exclusively be the case. [1] http://www.enterprisenetworkingplanet.com/netsp/article.php/3615896/Networking-101-Understanding-BGP-Routing.htm http://www.enterprisenetworkingplanet.com/netsp/article.php/... [2] https://www.youtube.com/watch?v=LFJzu0AFDpU https://www.youtube.com/watch?v=LFJzu0AFDpU (Dyn Engineer gave the talk) [3 ]http://www.rcrwireless.com/20160408/telecom-software/using-sd-wan-combat-ddos-aggressive-attacks-tag2 http://www.rcrwireless.com/20160408/telecom-software/using-s...
- zer0gravity 10y ago> we get some good neural networks built and deployed to the edge watching for unusual traffic patterns and disrupt them I was thinking at this as well. It's probably under active development right now, if not already live for some.