That post neither says what they know nor what they’re doing IMHO. I hope there will be a more detailed post Morten soon.
Malicious attack on Wikipedia – what we know and what we’re doing
31–40 of 320 posts
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#32Someone claimed the attack on twitter with some details (DDoS) - and proved it later by stopping the attack for x minutes then restarting it at a specific time. https://twitter.com/fs0c131y/status/1170093562878472194?s=20 - the attacker also went on to DDoS the twitch ingest servers (not twitch.tv itself) knocking some big streamers offline.
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#33Apparently this group is behind it. Also attacked WoW and twitch servers.. https://twitter.com/ukdrillas
Part of the liability should be shared with the people owning the compromised machines these crazies are using for their attacks, otherwise attacks like these will never stop as long as enough free “ammunition” is being left around by incompetent people who can’t be bothered to secure & monitor their systems properly. Edit: in reply to some of the (valid) counter-arguments, I'd like to say that there are indeed many…
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#34I don't understand the goal though. What to gain ? Training for another big target ?
- Bragging rights
- Experimentation
Edit: Also potentially political or personal. Eg Posting something that offends 8chan||nation states etc.
There's quite often blackmail involved (Pay us $x BTC and we go away).
Cloudfront or similar should offer DDoS protection for free as a gesture of goodwill, it's good bragging rights for CF so everyone wins.
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#35Just want to mention, WMF has a very small but elite team of engineers. Amazed they maintain an Alexa top 5 site with many orders of magnitude less engineering staff than Facebook or Reddit. I think they must count ~100 engineers? I can't imagine what such a small team must be going through with a major DDOS - wish them well in their efforts!
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#36Earlier quoted context omitted.
Part of the liability should be shared with the people owning the compromised machines these crazies are using for their attacks, otherwise attacks like these will never stop as long as enough free “ammunition” is being left around by incompetent people who can’t be bothered to secure & monitor their systems properly. Edit: in reply to some of the (valid) counter-arguments, I'd like to say that there are indeed many…
I, too, wish to punish people for daring to own something that might have a zero-day.
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#37Apparently this group is behind it. Also attacked WoW and twitch servers.. https://twitter.com/ukdrillas
Part of the liability should be shared with the people owning the compromised machines these crazies are using for their attacks, otherwise attacks like these will never stop as long as enough free “ammunition” is being left around by incompetent people who can’t be bothered to secure & monitor their systems properly. Edit: in reply to some of the (valid) counter-arguments, I'd like to say that there are indeed many…
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#38Apparently this group is behind it. Also attacked WoW and twitch servers.. https://twitter.com/ukdrillas
Part of the liability should be shared with the people owning the compromised machines these crazies are using for their attacks, otherwise attacks like these will never stop as long as enough free “ammunition” is being left around by incompetent people who can’t be bothered to secure & monitor their systems properly. Edit: in reply to some of the (valid) counter-arguments, I'd like to say that there are indeed many…
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#39I don't understand the goal though. What to gain ? Training for another big target ?
Re: Malicious attack on Wikipedia – what we know and what we’re doing
#40Remember: there are BitTorrent links that the Wikimedia Foundation gives out of SQL dumps of Wikipedia and the other projects. You can have a copy in case this happens in your country: https://en.wikipedia.org/wiki/Wikipedia:Database_download#Wh... Also, the Kiwix project has a hotspot project that allows you to host ZIM files (dumps of Wikipedia and other CC licensed content, like TED talks and StackOverflow) on a R…