1 billion+ people won't hear of it much.
I would be interested to know, what did Spamhaus paid google to use its resources, and would such a type of cooperation on global scale means the end of DDoS in the long term?
101–110 of 159 posts
1 billion+ people won't hear of it much.
I would be interested to know, what did Spamhaus paid google to use its resources, and would such a type of cooperation on global scale means the end of DDoS in the long term?
Earlier quoted context omitted.
Glad to know in the case of full scale nuclear war, the only survivors will be lunatics and data center admins.
They are not disjoint sets.
This story doesn't mention that Spamhaus is protected by CloudFlare and we took a beating from this attack. At some point I'm hoping the full technical story about how the attack morphed from our infrastructure to Internet infrastructure can be told. Also, http://openresolverproject.org PS Technical details: http://blog.cloudflare.com/the-ddos-that-almost-broke-the-in...
At some point I'm hoping the full technical story about how the attack morphed from our infrastructure to Internet infrastructure can be told. See poorly configured DNS servers and ISP's failing to configure their networks properly - so traffic with a source address which is not part of your allocated IP block is not allowed to leave your network. It is not that hard! The Internet Infrastructure is working as designe…
It may not be that hard to set things up this way, but very few ISPs configure their network with this restriction.
This story doesn't mention that Spamhaus is protected by CloudFlare and we took a beating from this attack. At some point I'm hoping the full technical story about how the attack morphed from our infrastructure to Internet infrastructure can be told. Also, http://openresolverproject.org PS Technical details: http://blog.cloudflare.com/the-ddos-that-almost-broke-the-in...
Has this been affecting other CloudFlare clients? Some of my sites have had short periods of slow response times for the past few days but I assumed it's the crappy host their on. One of my clients on CF hasn't had any issues.
I assume it was related to this attack.
This story doesn't mention that Spamhaus is protected by CloudFlare and we took a beating from this attack. At some point I'm hoping the full technical story about how the attack morphed from our infrastructure to Internet infrastructure can be told. Also, http://openresolverproject.org PS Technical details: http://blog.cloudflare.com/the-ddos-that-almost-broke-the-in...
If Spamhaus' Linford is quoted accurately, he's kind of full of it. The NYT article gives more detail about CloudFlare's involvement.
Earlier quoted context omitted.
I was under the impression that their statement was less of a challenge and more of a declaration as such: "We mustn't be brought down."
You are almost certainly mistaken. The statement was followed immediately by the claim that Spamhaus has the largest network of DNS servers in the world.
I got there from the comments on the CloudFlare blog posts, where a user named "STOPhaus" posted taunting CloudFlare, with a link to the stophaus.com website. Apparently it's a meeting place for anti-Spamhaus sentiment and includes such classy stuff as personal information on Spamhaus employees.
Wild stuff, and thanks to CloudFlare for their writeup.
Earlier quoted context omitted.
Indeed; if you really want to survive such effects, you need to do what they did in Cheyenne Mountain: build a tunnel through a mountain and install your blast doors etc. perpendicular to it some distance from the entrances; Wikipedia says it'll handle 600 psi. One of the reasons we deemphasized it and went to Boeing E-4s (747 command posts) in the early '70s was that we judged the Soviets had a good chance of landin…
The SS-18 Mod 3 was introduced in 1976 - 20Mt warhead with a CEP of 700m - the Mod 5 reduced that to 370m. Not even a large mountain is going to withstand multiple 20Mt hits. http://en.wikipedia.org/wiki/R-36_%28missile%29 Tom Clancey described these missiles as having the mission to: "turn Cheyenne Mountain into Cheyenne Lake." The novel "Arc Light" also has a description (probably not that accurate) of a limited st…
On the other hand, an early strike at both ends of the tunnel is very different from eroding it over some period of time (has to be some separation to avoid fratricide); if the construction was done well enough, the latter might have provided more time for NORAD to transmit additional data about the attack in progress.
Earlier quoted context omitted.
You seem to be taking the line of the attackers' spokesman, who accused, rather hysterically, Spamhaus of deciding what goes on the internet. Of course, all Spamhaus does is supply a list of hosts who are sending email spam, and other things like lists of dynamic IPs. Sounds like this hosting outfit was making money hosting spammers and their business is threatened by legitimate countermeasures.
He's not the only one to do so. Spamhaus has engaged in some shady behaviour; even pg wrote about it once: http://paulgraham.com/spamhausblacklist.html (2005) I wanted to believe him. But before I could reply to his mail, I got first-hand evidence that the SBL has in fact gone bad. As of this writing, any filter relying on the SBL is now marking email with the url "paulgraham.com" as spam. Why? Because the guys at th…
Impossible. The SBL lists only IP addresses; there is no content filtering at all.
Furthermore, there's a lot of FUD in this thread about Spamhaus listing people who don't emit spam. IF this is true, then Spamhaus would have an unacceptably high false positive rate, and we would be able to observe this. In reality, Spamhaus has the lowest FP rate in the industry. Occam's Razor suggests those who claim to have been wrongly blocked are mistaken about the reason for their listings (if they ever existed in the first place).