Search Computing Unplugged's 16,074 article archive 
Home
EasyPrint
News details Click here for the RSS feed's XML code. This is not a browser URL.
Articles-only Click here for the RSS feed's XML code. This is not a browser URL.
Twitter Feed Click here for the Twitter feed.
Incident report: denial of service attack against ConnectedPhotographer.com (continued)

The solution was to change the IP address of the server for other Web sites and then update the DNS records to point to the new IP address. I did not do this for Connected Photographer, and that site remained intentionally offline through much of the weekend.

Key observations
The key observation was the ferocity of accesses. We were being hit by thousands of separate computers per minute, and I tracked more than 10,000 individual computers before the stage-one firewall died. Overall, I estimate somewhere above a million individual computers hit our servers in the space of a day or so.

The second key observation was that our first-line server was unable to withstand the load of such an attack. The only approach that seemed to work was to change the IP on the other sites, and kill the Web site being attacked. We then spent the next few days creating some new technology that sits between the firewall and our primary Web servers, managing and blocking the flow of these attacks. So far, it's working quite well and (knock on wood), I'm hoping it'll keep the wolves at bay, for at least a while.

Cost to us, of course, is we had a dead site for four days, because we couldn't bring it back online without the possibility of a reoccurance of such an attack until we'd put a barrier system in place. Although the attack was clearly spam oriented, it's still undeniably a distributed denial of service because service was denied.

Since we were able to sustain only about ten minutes of direct flow observation, and the attack lasted hours, I suspect millions of IP addresses are firing. Further, since Connected Photographer is a relatively minor site compared to, say, Google, I suspect each computer that fired on our server also fired on thousands of other servers.

Finally, because of the absolute ferocity of this attack, coming from so many computers, it took us a couple of days to engineer a robust defense. Our sites are merely informational. But were an attack like this to hit a server that was important to infrastructure, the damage could be devastating.

I recently wrote an article in Counterterrorism Magazine about how cyberterrorism can damage infrastructure. This week, we witnessed the power of such an attack.

Jorge Sosa is a writer/photographer for the Hutchinson Leader. He can be reached via e-mail at jsosa1234@yahoo.com or on Twitter at http://twitter.com/jsosa1234.


« Previous  ·  1  ·  2
Other articles you might like
Home > Extras > Editorials (118 articles)
   Say goodbye to the Uh-Ohs. Long live the Tens.
   Exploring the dark side of social networks
   An open letter to Palm CEO Ed Colligan about finding the win-win position
Home > Solutions > Safety and Security (8 articles)
   The dangers of wireless computing for the unsuspecting
   Exploring the dark side of social networks
   Watch your back: avoid becoming a victim of holiday scams
Get Weekly Email Updates
Subscribe to our regular weekly email newsletter. It's packed with tips, reviews, deep analysis, and the latest news.
 
Recent Computing Unplugged Articles
The iPad defenders have spoken
Make Mafia Wars an offer it can't refuse
Yet another toaster oven not to buy: Cuisinart TOB-50
Heather in Kuwait: what gadgets to bring on a long trip
Invade my privacy, please.
The iPad: Apple's latest heartbreaker
Recruiting the Army of Two on PSP
Computing Unplugged News
HSN Launches Mobile Shopping App for Android Devices
Resco MobileCRM Studio
15 percent off Proporta products on St. Patrick's Day
Google's Traffic Is Giant, Which Is Why It Should be Your ISP
MySpace Jumps Into Bulk User Data Sales
Beginning Mac Programming: Develop with Objective-C and Cocoa
Microsoft Tells Windows Phone 7's App Story
>> Read all the news
More from the ZATZ journals
David Gewirtz Online: CNN commentary and analysis
DominoPower: Application development, William Shatner, and the origin of the universe
OutlookPower: More about disappearing text
-- Advertisement --

BLOGGING AND PODCASTING WITH ONE EASY-TO-USE TOOL
Now you can publish your thoughts, opinions, and comments in your own blog or podcast.<p />

  • Supports multiple authors and multiple blogs or podcasts.
  • Generate and publish RSS feeds for iTunes and other directories.
  • Post photos, images or animations.
  • Get feedback and have conversations with visitors to your site. <p />

Personalize your blog or podcast with your own unique domain name -- or integrate it with your existing site by setting it up as a subdomain.

Tap here and get blogging or podcasting within minutes.

-- Advertisement --

Sent Items Organizer
When you need to file your sent email into their proper folders based on keywords or who it's to. It's also perfect for shared mailboxes.

It also adds a "Send And File" toolbar button while you're composing (similar to the way Lotus Notes used to work) for quick and easy filing.

Find out more!

ZATZ Home  ·  News  ·  Back Issues  ·  Credits/Trademarks ·  Link To Us
Copyright © 2003-2010, ZATZ Publishing. All rights reserved worldwide.
Editor's Login