Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

Major Geeks for more than your General Needs.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews



IObit Black Friday Sale

spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Smart Defrag
4. MusicBee
5. Sergei Strelec's WinPE
6. Microsoft Visual C++ 2015-2022 Redistributable Package
7. Visual C++ Redistributable Runtimes AIO Repack
8. McAfee Removal Tool (MCPR)
9. K-Lite Mega Codec Pack
10. Tweaking.com - Windows Repair
More >>

top reads

Star All the New Features Landing in Windows 11 This December

Star Lossless vs Lossy: When FLAC, APE, and ALAC Beat MP3 and When They Don't

Star Google Search Tricks You'll Actually Use in 2025 and Beyond

Star Fresh PC Checklist: First 12 Things to Do On a New Windows 11 Machine

Star Running AI Models Locally: What They Are, Where to Find Them, and How to Get Started

Star Deciding Between Idle State, Sleep Mode, and Shutdown: What's Best for Your PC?

Star How to Fix VMware Workstation "The Update Server Could Not Be Resolved" Error Installing VMware Tools

Star How to Remove Google Gemini from Your Phone (and Your Life)

Star Windows Bloat Removal Guide: Debloat Safely and Keep What You Need

Star Windows 11 Repair Playbook: SFC, DISM, CHKDSK Without Breaking Stuff


MajorGeeks.Com » News » March 2013 » Large-scale DNS DDoS attack on Spamhaus

Large-scale DNS DDoS attack on Spamhaus


Contributed by: Email on 03/27/2013 03:52 PM [ comments Comments ]


Almost unnoticed by the public, the most aggressive DDoS (Distributed Denial of Service) attack in the history of the internet was carried out last week. At least this is what the New York Times reports, referring to statements made by a high-ranking member of staff at content distribution provider Akamai. The attack targeted the Spamhaus anti-spam organization.

Apparently, Spamhaus seriously trod on various spammers' toes before the attack. The organization had added IP address blocks belonging to Cyberbunker, a Dutch hosting service that is considered to be spammer friendly, to its blacklist. As almost 80 per cent of anti-spam filters use this blacklist and consequently began to block Cyberbunker, customers of the hosting service suddenly found themselves almost unable to send out any emails.

Shortly afterwards, on 19 March, an initially moderate, but then greatly intensifying DDoS attack was unleashed on the Spamhaus web servers. According to Akamai, the attack's data stream reached up to 300 GBits/s at peak times. Only a few hours after the attack began, Spamhaus commissioned security company Cloudflare to mitigate the attack. In a blog post (and later follow-up post) Cloudflare CEO Matthew Prince describes how the attack progressed and analyses the attackers' techniques.

According to Prince, the majority of junk traffic was generated using a DNS amplification attack or DNS reflection attack. This well known method relies on the fact that there are thousands of open DNS servers worldwide that will respond to any request without performing any checks. The attackers send requests with their victim's spoofed IP address to these "open resolvers" – then the responses arrive on the victim's system.

In the current case, each request was about 36 bytes long and requested a DNS zone file of around 3,000 bytes. Therefore, the DNS servers amplified each request by a factor of almost 100. Prince explained that Cloudflare registered at least 30,000 requesting DNS servers. According to the CEO, the attackers only needed 750 MBits/s of outgoing bandwidth to generate an average traffic load of 75 GBits/s for their victim. Only "a small sized botnet" was therefore needed to knock the Spamhaus web site offline, added Prince.

The Cloudflare executive didn't hesitate to compare the DNS reflection technique to a nuclear bomb: "It’s so easy to cause so much damage," he said, according to the New York Times. Patrick Gilmore from Akamai likened the technique to using a machine gun to spray an entire crowd in order to kill one person. Akamai found that the attack had significant effects on global network loads, added Gilmore. Apparently, web pages were temporarily inaccessible and streaming services such as Netflix suffered noticeable disruptions.






« Secure Boot complaint filed against Microsoft · Large-scale DNS DDoS attack on Spamhaus · Meanwhile in Egypt the internet is disrupted with divers, and knives »




Comments
comments powered by Disqus

MajorGeeks.Com » News » March 2013 » Large-scale DNS DDoS attack on Spamhaus

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition