Live data from Hacker News

GitHub under ongoing DDoS attack

status.github.com

141–150 of 352 posts

Re: GitHub under ongoing DDoS attack

#141

Most blog updates like this post the traffic they're experiencing, is there a reason Github wouldn't do that?

Maybe they've just too been busy to post it yet.

Maybe, but they have 272 employees, I'm sure most of those will be capable of a quick "we got this many requests in this many seconds". Though their team page doesn't list job titles.

Re: GitHub under ongoing DDoS attack

#142
post #55

Earlier quoted context omitted.

Which raises the question: when will the rest of the world kick China of the internet? First it was redirecting Chinese internet users to random IPs, if the government didn't like their DNS queries and now they're doing ddos attack on a site that host a large percentage of open source code, used for a whole host of service and products. At some point it's going to make more economical sense to kick China of the inter…

> when will the rest of the world kick China of the internet? By "rest of world" do you mean the USA? Or Europe? Or basically "the west"? When does it sound like cultural imperialism? Are countries (and their citizens) only permitted to be connected to the internet if their culture matches that of your country/federation? How is that not an offensive idea? Usually, I reverse statements and if I find them offensive in…

It has nothing to do with culture. It has to do with committing crimes against the global infrastructure. Nobody is calling for the disconnect of Japan, Vietnam, South Korea, or even North Korea because none of those countries are taking a dump in the swimming pool we are all trying to use.

Re: GitHub under ongoing DDoS attack

#143
post #88

Earlier quoted context omitted.

That would be the death of Baidu among the Chinese diaspora.

Buh? Encryption is de-facto illegal in China. To the extent SSL is used, you can be sure that the government already has a copy of the master key. I've worked on Chinese deployed train systems, and we were banned from encrypting train control signals (signing was allowed, though), just in case someone might try to sneak in a political message in an ATO control telegram...

Not breaking encryption itself. Breaking encryption to serve malicious scripts.

Re: GitHub under ongoing DDoS attack

#144

Can Github ask for US Government help with it, since it's an attack by [presumably] foreign sovereign entity? It's paying taxes in US, right — so it may expect some kind of protection, isn't this what taxes are about?

""Cybercrime"" and ""cyberterrorism"" resources are only deployed (a) for securing more funding (b) for expanding US surveillance or sometimes (c) on behalf of big donors like the copyright industry.

The US has no interest in saying "international cyberattack should be illegal" because then other countries might insist that it stop. They could go for a trade war escalation, but that would at some point have Apple as a casualty.

Re: GitHub under ongoing DDoS attack

#145
post #83
post #62

Earlier quoted context omitted.

> You want the people in China consuming more and not less of it. Want all you wish, the Chinese government is actively stopping and blocking the outside internet at an alarming rate. I was in Beijing a few weeks ago and couldn't load google, youtube, gmail, gmaps, instangram, facebook, twitter, various chatting apps, imgur, and on and on. Even using VPNs were difficult. I don't see this stopping anytime soon since i…

I spend about 6 months of the year in China. Yes, I am forced, as you say, to use the Chinese versions of everything, but, to be honest, it doesn't worry me. I use Baidu to put my teaching notes online for my students - it is as good as DropBox. Bing is allowed and works fine as a search engine, even if it blocks any results for "naughty" words. It becomes a bit of a game to see which double entendres it doesn't reco…

50c well earned.

Re: GitHub under ongoing DDoS attack

#147
post #50

Earlier quoted context omitted.

Looks to me like it's time for a DDoS X-Prize. 1. SSDP Flood 21% 2. SYN Flood 19% 3. UDP Flood 13% 4. UDP Fragment 12% 5. NTP Flood 8% 6. GET Flood 7% 7. CharGEN Attack 5% 8. DNS Flood 5% 9. ICMP Flood 2% 10. SNMP Flood 2% Eliminating these 10 attack vectors would account for 94% of DDoS attacks according to this visualization[1], as witnessed by Akamai over the last 30 days. Just the top 3 is more than 50%. Seems li…

SYN Flood is already mitigated a long time ago with SYN cookies. The rest ..... well, it's basically just packets. I see this latest development as good news. The Javascript MITM trick was very clever because forcing github to render and serve a page is a lot more resource consuming than just firing packets at servers that ignore them (like a UDP or SYN flood). The latter can saturate network links until the sources…

synflooding is not mitigated by syncookies. the attacker can encode information inside the packets in exactly the same way as the server, meaning they don't have to maintain any state, see: http://insecure.org/stf/tcpdos/outpost24-sect-sockstress.ppt (slide 18 onwards)

Re: GitHub under ongoing DDoS attack

#148
post #130
post #21

As a paying customer of Github I want them to know they have my undivided support in staying strong against "the bullies".

"Bully" is rather too weak a label for the perpetrator. This attack is criminal. If carried out by a sovereign nation, perhaps an act of war. We don't allow foreign raiding parties to enter our country to loot private businesses. Neither should we treat this attack as a simple act of "bullying". GitHub should get the full support of federal law enforcement, if not the military.

> perhaps an act of war

> GitHub should get the full support of federal law enforcement, if not the military.

Are you sure you wanna go there? Think it through ;)

Don't let me stop you though. Den Haag is lovely this time of year and I have this thing I want to talk over with you guys anyway.

Re: GitHub under ongoing DDoS attack

#149

Earlier quoted context omitted.

Which raises the question: when will the rest of the world kick China of the internet? First it was redirecting Chinese internet users to random IPs, if the government didn't like their DNS queries and now they're doing ddos attack on a site that host a large percentage of open source code, used for a whole host of service and products. At some point it's going to make more economical sense to kick China of the inter…

>when will the rest of the world kick China of the internet? One day we're advocating net neutrality and the next day we want to ban entire countries from the internet? I still prefer net neutrality, thank you.

I disagree with parent but I have learned from this case that anyone with access to a major CDN or the great firewall can take down any website. There is unbalanced power. What if I don't have access to the OPs team of github?
Post reply on HN