Live data from Hacker News

Botnet Responsible for 18% of World’s Spam Knocked Offline

mashable.com

21–22 of 22 posts

Re: Botnet Responsible for 18% of World’s Spam Knocked Offline

#21
post #11
post #8

I never understood why not the upstreams of "bulletproof hosts" simply disconnect / de-peer the entire AS until they clean up their act? Why won't their BGP neighbors take action? If you can't get ScumBagISP-A to clean up their act, go to ScumBagISP-Upstream-B, and then the next hop ScumBagISP-Upstream-Nexthop-C, and the next, until you find a responsible carrier who can de-peer?

That was tried about 5 years ago against the "Russian Business Network", AS40898. http://blog.washingtonpost.com/securityfix/2007/11/russian_b... As far as I know it only worked temporarily.

You're missing an 'l'.

http://blog.washingtonpost.com/securityfix/2007/11/russian_b...

Re: Botnet Responsible for 18% of World’s Spam Knocked Offline

#22
post #9

Why don't botnet operators use a peer-to-peer style command centers? According to the original article on the FireEye blog, the network was taken down with only "three days of effort."

Some of them do, notably Zeus. It takes quite a bit of work to make a botnet take instructions in a peer to peer fashion, so only the most sophisticated pieces of malware offer that feature.
Post reply on HN