Earlier quoted context omitted.
And if someone invests in having >90% of the peers offer a malicious file and serve DHTs matching that file?
Torrent files are hashed, so it's exactly the same risk profile as the comment I was referring to. But generally hashing algorithms are collision-proof enough that what you're describing is basically impossible (requiring many years of compute time).
Azure hit by 15 Tbps DDoS attack using 500k IP addresses
201–210 of 318 posts
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#202> it suddenly ballooned in size in April 2025 after its operators breached a TotoLink router firmware update server and infected approximately 100,000 devices This is scary. Everyone lauds open source projects like OpenWRT but... who is watching their servers? I imagine you can't run an army of security people on donations and a shoestring budget. Does OpenWRT use digital signing to mitigate this?
Digital signing wouldn't defend you from a compromised build server.
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#203Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#204Earlier quoted context omitted.
Or the law makes the problem smaller, by making the routers secure, and makes outcomes just, by penalizing the responsible companies.
ok, let's redo this: instead of routers it's an IoT device. The router protects the IoT device from direct access so it is secure from majority of attack vectors - now an IoT device provider gets their server compromised and hundreds of thousands of IoT devices are now bots in a botnet due to the ability to forcefully push a security update.
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#205I will never understand why there isn’t an international law enforcement agency with teeth, which can get rid of the bad actors.
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#206This is what I don't get >The Aisuru DDoS botnet operates as a DDoS-for-hire service with restricted clientele; operators have reportedly implemented preventive measures to avoid attacking governmental, law enforcement, military, and other national security properties. Most observed Aisuru attacks to date appear to be related to online gaming. https://www.netscout.com/blog/asert/asert-threat-summary-ais... So why? Li…
What is even more interesting why attack Azure? It's not possible to extort anything from Microsoft, so what's the rationale?
lul wut?
https://www.businessinsider.com/trump-white-house-ballroom-d...
https://www.cnbc.com/2025/01/09/microsoft-contributes-1-mill...
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#207Earlier quoted context omitted.
Ballpark math says you could sustain it for half an hour on Hetzner for $5k-$6k (only from 1500 IPs though), at least if your account didn't get banned first and you're halfway decent at network programming. I have no idea what a proper botnet like this costs though or how large the profit margins are.
Isn't the idea behind botnets that no one is paying for the bandwidth, besides the unsuspecting random people who have fallen victim to malware? I'd imagine the pricing is quite disconnected from the price of "legitimate" bandwidth. But I don't know in what direction.
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#208Earlier quoted context omitted.
ok, let's redo this: instead of routers it's an IoT device. The router protects the IoT device from direct access so it is secure from majority of attack vectors - now an IoT device provider gets their server compromised and hundreds of thousands of IoT devices are now bots in a botnet due to the ability to forcefully push a security update.
I understand the risk, but the existance of risks doesn't mean they outweigh the benefits. Everything has risks.
relevant law here: EU Cyber Resilience Act (CRA).
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#209Earlier quoted context omitted.
"Game servers" also doesn't just mean Timmy's Minecraft server. It's big commercial games. Final Fantasy XIV keeps getting hammered, likely Aisuru, off and on since at least September. https://na.finalfantasyxiv.com/lodestone/news/detail/6b56814...
For some scale, Final Fantasy XIV makes about $65 million in annual revenue (and decreasing).
Re: Azure hit by 15 Tbps DDoS attack using 500k IP addresses
#210I will never understand why there isn’t an international law enforcement agency with teeth, which can get rid of the bad actors.
It's national interest of China and Russia to see the West to fail. Why would they co-operate? They are willing to murder people, West and their own, so "law" enforcement means a bit different in international context.
It is China's national interests to see a stable America that can continue to maintain the post WWII world order that benefited China so much for so long. Without the US, who is going to maintain peace in the middle east, Africa and other places? without such peace, how could China export its goods and services?
"West" != America.
Your claim also implies that China and Russia are operating on the same level. That is laughable at best - Russia is a failed rogue state with the economic size comparable only to a Chinese province, it is left behind in ALL modern techs and its military hardware are aging fast. It is the complete opposite of the path took by China.