4 ms·
Most users are on dynamic IPs. So you'd probably be blocking/nagging the wrong person
by simooooo 10y ago
Most users are on dynamic IPs. So you'd probably be blocking/nagging the wrong person
- wes-k 10y agoHow often do most dynamic IPs switch? Been rare for me. How quick can we go from recording malicious IP to showing user an alert on some website?
- jagermo 10y agoGermany: after 24 hours there is normally a short disconnect and a new ip address to prevent people from running servers at home
- anc84 10y agoAfter 24 hours at least, potentially earlier. Huge parts of Europe are at such setup at least.
- wes-k 10y agoI suppose that points to the solution needing to be at the ISPs. They know the IP assignment history. And they could also be responsible for filtering malicious traffic.
- bogomipz 10y agoInteresting I didn't know this. ISPs could certainly change this policy for a duration during which they scanned their networks for Mirai IoT devices and notified affected customers. In the US I believe cable modems are static DHCP leases tied to the mac address of the cable modem. Of course this would be an arms race of sorts if the next version of the malware simply added port knocking sequences to the compromised routers in front of these vulnerable IoT devices.