Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 | 3 | 4 | 5 
Rickles
3108 posts

Uber Geek
+1 received by user: 445

Trusted

  #2555691 2-Sep-2020 14:38
Send private message

     >https://horizon.netscout.com/<

 

What does the 'fireworks' display actually show?




ezbee

2651 posts

Uber Geek
+1 received by user: 3089


  #2555695 2-Sep-2020 14:46
Send private message

The map of attacks does look like they move around and I suppose the aim is take down one site and then move onto next.
It will take time for the target to recover their system, then you can give them another concentrated bash.
Apparently you can buy zombie sever time on the dark web, free enterprise DDoS.

 

Australian locations at one point were getting a heavy battering.

 

At one point there was a lot of attacks disappearing into the Indian Ocean.
I presume its not the location of servers just the .IO domain registered there.

 

Secret Data Center at Manapouri , 
Hah, Had me thinking the project with its underground caverns would make an ideal Bond Villain Hideout.
My Subs is the one parked in Deep Cove !

 

NZX, well nanosecond, even day trading distorts the market anyway, so bring back chalky. 


Scotdownunder
225 posts

Master Geek
+1 received by user: 108

Subscriber

  #2555711 2-Sep-2020 15:00
Send private message

I do wonder when authorities around the world will finally take Bot-nets comprising Millions of compromised devices seriously and follow the medical world and enforce a vaccine and quarantine approach.  Yes compulsory patching of vulnerable devices by ISPs with disconnect fallback option.  ISPs who don’t co-operate get disconnected from higher tier networks.  Drastic but its what would work if driven by a few of the top countries all the ISPs want to connect to. Also ensures bad actors cannot use corrupt / owned ISPs to bypass the rules.

 

Of course it will never happen in the real money driven corporate world.




PolicyGuy
1820 posts

Uber Geek
+1 received by user: 1769

ID Verified
Lifetime subscriber

  #2555714 2-Sep-2020 15:03
Send private message

According to Stuff [https://www.stuff.co.nz/business/122636582/gcsb-examining-extortion-email-sent-to-nzx-ahead-of-ddos-attack] "It is understood that attackers at one point deluged NZX with more than a terabit a second (Tbps) of spurious data."

 

If that's true, it means this is a very non-trivial attack, and puts the NZX's defences in a different light.


freitasm
BDFL - Memuneh
80652 posts

Uber Geek
+1 received by user: 41044

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2555742 2-Sep-2020 15:37
Send private message

"Technical Approaches to Uncovering and Remediating Malicious Activity" (PDF download).

 

Released today by The Australian Cyber Security Centre (ACSC), New Zealand’s National Cyber Security Centre (NCSC NZ) and Computer Emergency Response Team NZ (CERT NZ), Canada’s Communications Security Establishment, and the United Kingdom’s National Cyber Security Centre (NCSC UK) teamed up with USA's Cybersecurity and Infrastructure Security Agency (CISA).





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


Beccara
1473 posts

Uber Geek
+1 received by user: 517

ID Verified

  #2555747 2-Sep-2020 15:44
Send private message

PolicyGuy:

 

According to Stuff [https://www.stuff.co.nz/business/122636582/gcsb-examining-extortion-email-sent-to-nzx-ahead-of-ddos-attack] "It is understood that attackers at one point deluged NZX with more than a terabit a second (Tbps) of spurious data."

 

If that's true, it means this is a very non-trivial attack, and puts the NZX's defences in a different light.

 

 

 

 

Would also make it one of the top 10 i think in history





Most problems are the result of previous solutions...

All comment's I make are my own personal opinion and do not in any way, shape or form reflect the views of current or former employers unless specifically stated 

 
 
 
 

Shop now for Dell laptops and other devices (affiliate link).
ezbee

2651 posts

Uber Geek
+1 received by user: 3089


  #2555786 2-Sep-2020 16:24
Send private message

There is this recent Wired article July 2020 which gives a general background.
https://www.wired.com/story/ddos-for-hire-fueling-new-wave-attacks/

 

Apparently it does not have to be the large brute force volume ( Though there is potentially plenty of that ),
rather more nuanced attack with very high packet rate, a swarm of mosquitos if you will that you have to zap.

 

""
"Over 50 percent of that 809 million packets-per-second was coming from enterprise-level DVRs," says Roger Barranco, Akamai's vice president of global security operations. "What’s new is the concept of campaigns. We go back a couple of years and 'attack' was the right word to use. There were many attacks every single day, but they weren’t in my opinion campaign-oriented. Some of our more recent ones are campaign-oriented where the attacker is working in a coordinated way over an extended period of time."
""

 

Surveillance CAM fever ?


freitasm
BDFL - Memuneh
80652 posts

Uber Geek
+1 received by user: 41044

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2555788 2-Sep-2020 16:28
Send private message

ezbee:

 

"Over 50 percent of that 809 million packets-per-second was coming from enterprise-level DVRs," says Roger Barranco, Akamai's vice president of global security operations.

 

 

And people don't understand when we tell them not to port forward to their crappy knock off cameras and that they are opening themselves to be a bot in DDoS operations...





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


neb

neb
11294 posts

Uber Geek
+1 received by user: 10018

Trusted
Lifetime subscriber

  #2555829 2-Sep-2020 17:36
Send private message

ezbee:

The map of attacks does look like they move around and I suppose the aim is take down one site and then move onto next.

 

 

I wouldn't read too much into those maps, they're done more to provide eye candy for the media and as a sales tool than as a detailed representation of what's going on.

1 | 2 | 3 | 4 | 5 
View this topic in a long page with up to 500 replies per page Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.