Live data from Hacker News

Estimating the Revenue of a Russian DDoS Booter

arbornetworks.com

11–20 of 56 posts

Re: Estimating the Revenue of a Russian DDoS Booter

#11

Hi. I run a thing that uses a lot of bandwidth. Repeat after me: I can not safely use usage-based pricing clouds like AWS and GCS until they get serious about the DDoS problem. I can not safely use usage-based pricing clouds like AWS and GCS until they get serious about the DDoS problem. I can not safely use usage-based pricing clouds like AWS and GCS until they get serious about the DDoS problem. I've brought this u…

[deleted]

Re: Estimating the Revenue of a Russian DDoS Booter

#12

Hi. I run a thing that uses a lot of bandwidth. Repeat after me: I can not safely use usage-based pricing clouds like AWS and GCS until they get serious about the DDoS problem. I can not safely use usage-based pricing clouds like AWS and GCS until they get serious about the DDoS problem. I can not safely use usage-based pricing clouds like AWS and GCS until they get serious about the DDoS problem. I've brought this u…

[deleted]

Re: Estimating the Revenue of a Russian DDoS Booter

#14

Under $100 for a large-scale DDOS attack is ridiculously cheap. It's no wonder these are getting freakishly common. Does anyone have a best-practices for dealing with the more modern variants?

Use service like cloudflare, it's 250 dollars and you are UDP attacks completely free + a lot of TCP ones.

Re: Estimating the Revenue of a Russian DDoS Booter

#15
post #14

Under $100 for a large-scale DDOS attack is ridiculously cheap. It's no wonder these are getting freakishly common. Does anyone have a best-practices for dealing with the more modern variants?

Use service like cloudflare, it's 250 dollars and you are UDP attacks completely free + a lot of TCP ones.

CloudFlare protection can be easily bypassed. These types of proxy services which offer decently cheap DDoS protection are fine for defending against small-time attacks, however, plenty of attackers have scripts capable of bypassing them.

Re: Estimating the Revenue of a Russian DDoS Booter

#16
post #9

Dennis you left the name of the Russian DDoS site in one of your images...you may want to consider cropping this.

He explicitly states the site name in the article. No real reason to remove it imo.

>ASERT keeps tabs on DDoS botnets and their attack activity with our BladeRunner botnet monitoring system and kypitest[.]ru is no exception.

Re: Estimating the Revenue of a Russian DDoS Booter

#18
post #15
post #14

Earlier quoted context omitted.

Use service like cloudflare, it's 250 dollars and you are UDP attacks completely free + a lot of TCP ones.

CloudFlare protection can be easily bypassed. These types of proxy services which offer decently cheap DDoS protection are fine for defending against small-time attacks, however, plenty of attackers have scripts capable of bypassing them.

You can't bypass with syn floods or udp flood. And if we are talking about size of attack in context of bandwidth, look at spamhaus and cloudflare case. That wasn't small. I admit that specialized, sophisticated attack from lets say top3 botnets would make damage and probably bypass cloudflare http protection. But if someone is making such an attack on you then probably you can afford getting prolexic.

Re: Estimating the Revenue of a Russian DDoS Booter

#19
post #13

This problem exists mainly because the most used os doesn't have a package manager/app store or a secure and safe way to install software and it still doesn't because there is a huge av/security industry built to solve the problem it creates.

It does, actually, it's just that a) nobody uses it and b) any time it gets brought up people rail against Microsoft for trying to tell them what to do with their computers.

Re: Estimating the Revenue of a Russian DDoS Booter

#20
post #13

This problem exists mainly because the most used os doesn't have a package manager/app store or a secure and safe way to install software and it still doesn't because there is a huge av/security industry built to solve the problem it creates.

What has a dns relay attack to do with windows clients?
Post reply on HN