Live data from Hacker News

Basecamp was under network attack

gist.github.com

21–30 of 194 posts

Re: Basecamp was under network attack

#21
post #15
post #5

Some great language there: framing it as an attack by criminals (gains sympathy from users), explains in plain-terms what a DDOS is (front door analogy), emphasizes (twice!) that user data is safe, apologizes for the likely downtime, informs people where to get updates. Probably worth bookmarking this for when you [hopefully never] have to deal with this same situation.

[deleted]

Explain please.

Re: Basecamp was under network attack

#23

How do larger companies (like Basecamp) prepare for these kinds of risks? Do they contract with DDoS mitigation firms beforehand, or do most tend to hire help only when they are actually attacked?

DDOS firms (prolexic etc) are really expensive, I would imagine they do it on an as-needed basis. From my experience working at a datacenter, the first line of defense are the techs in the datacenter, for most attacks, they can blackhole offending IPs etc, and mitigate it. When it gets to the point of being something huge though, like the meetup.com attack, I would imagine they call in an outside firm.

Re: Basecamp was under network attack

#24

Although a smaller service, we were in a similar situation a couple of years ago. We assumed it was a competitor because there were not monetary requests, just a massive DDoS via torrents that lasted almost a week. Data center didn't help us in any way... it was crazy. Worst thing is that 90% of customers have no clue what a DDoS is and how hard it is to handle.

How is torrents protocol used to DDoS you? I never came across torrents being used as a DDoS. I would appreciate more details on what sort of torrent attack it was, and whether you found any ways of partially neglecting damage.

unfortunately i don't have the technical details, we weren't 100% sure but it seems there's a way to exploit BitTorrent by misdirecting clients to send their traffic toward any host. We ended blocking out ranges of ip's but at a point you end up cutting a lot of legitimate traffic as well (but i really lack the technical expertise to go more into depth on this).

Re: Basecamp was under network attack

#25
post #10
post #6

Earlier quoted context omitted.

I've been wondering myself, if CloudFlare helps against DDoS attacks when the page is dynamically generated for each user. For static pages it should help.

CloudFlare does more than just caching. Even on non-cached pages it can filter and otherwise mitigate traffic that it has identified as malicious.

Correct, many times I've had to fill out a captcha to load a CloudFlare-protected page.

Re: Basecamp was under network attack

#26
post #11

Although a smaller service, we were in a similar situation a couple of years ago. We assumed it was a competitor because there were not monetary requests, just a massive DDoS via torrents that lasted almost a week. Data center didn't help us in any way... it was crazy. Worst thing is that 90% of customers have no clue what a DDoS is and how hard it is to handle.

"Worst thing is that 90% of customers have no clue what a DDoS is and how hard it is to handle." Otoh that's where the opportunity is. The fact that "customers have no clue". People pay you for something that they can't do themselves or that you make easier for them to do.

There's an oportunity if you're Cloudfare or similar service, not a time tracking and pm app. Most users will end up blaming you because you're not prepared enough etc..

Re: Basecamp was under network attack

#27

Although a smaller service, we were in a similar situation a couple of years ago. We assumed it was a competitor because there were not monetary requests, just a massive DDoS via torrents that lasted almost a week. Data center didn't help us in any way... it was crazy. Worst thing is that 90% of customers have no clue what a DDoS is and how hard it is to handle.

I used to know people who performed these types of DDoS attacks.

Usually it was because they were hired to do so by a competitor. Every time they would claim to demand a ransom, although they didn't expect for it to be paid. It just made people less suspicious.

Re: Basecamp was under network attack

#28
post #15
post #5

Some great language there: framing it as an attack by criminals (gains sympathy from users), explains in plain-terms what a DDOS is (front door analogy), emphasizes (twice!) that user data is safe, apologizes for the likely downtime, informs people where to get updates. Probably worth bookmarking this for when you [hopefully never] have to deal with this same situation.

[deleted]

yes, quite strokes neckbeard

Re: Basecamp was under network attack

#29
post #5

Some great language there: framing it as an attack by criminals (gains sympathy from users), explains in plain-terms what a DDOS is (front door analogy), emphasizes (twice!) that user data is safe, apologizes for the likely downtime, informs people where to get updates. Probably worth bookmarking this for when you [hopefully never] have to deal with this same situation.

They use "criminals" 5 times in that short statement. IMO the overuse of emotive language is unnecessary and belies the emotional state of the author. Stay professional and detached—it's a DDoS, I've no doubt it's frustrating but they happen.

I prefer Github's recent response [0], clear and helpful but without the rhetoric.

[0] https://github.com/blog/1796-denial-of-service-attacks

Re: Basecamp was under network attack

#30
post #5

Some great language there: framing it as an attack by criminals (gains sympathy from users), explains in plain-terms what a DDOS is (front door analogy), emphasizes (twice!) that user data is safe, apologizes for the likely downtime, informs people where to get updates. Probably worth bookmarking this for when you [hopefully never] have to deal with this same situation.

Yup, they're doing a great job in couching it in language that their customers can understand regardless of technical background. It's easy to forget that services like Basecamp service a huge swath of people who wouldn't necessarily understand what's going on without that sort of copy massage.
Post reply on HN