Live data from Hacker News

GitHub under ongoing DDoS attack

status.github.com

221–230 of 352 posts

Re: GitHub under ongoing DDoS attack

#221
post #164

Earlier quoted context omitted.

Are you really serious? Adblocking is trivial and does not require government censorship. And how does allowing access to Google let them rule the world?

I think you miss my point. As I see it, the Chinese government are basically blocking Google as a business decision. Take a look at Baidu. You will be amazed at the number of services they offer. On the roads in China you see a lot of Audis and Mercedes. These are mostly driven by Government officials. There are many avenues for Government officials to earn money. I don't know the size of companies like Baidu and Ali…

The valuation of Baidu is currently around $50 billion. Compare this to Amazon which is valued at $125 billion, and Google at $375 billion. Apple is at $600 billion. So you're basically wrong.

Re: GitHub under ongoing DDoS attack

#223
post #130
post #21

As a paying customer of Github I want them to know they have my undivided support in staying strong against "the bullies".

"Bully" is rather too weak a label for the perpetrator. This attack is criminal. If carried out by a sovereign nation, perhaps an act of war. We don't allow foreign raiding parties to enter our country to loot private businesses. Neither should we treat this attack as a simple act of "bullying". GitHub should get the full support of federal law enforcement, if not the military.

The military?

Re: GitHub under ongoing DDoS attack

#224

Why are there so many condescending comments about "saving the Chinese people". Ask yourselves, are you really qualified to judge the Chinese people? Have you been to China? Have you been to different parts of China? What are the main sources that you obtain news? Are you reading the "assumptions" over and over again until they are "assumed" as facts? I liked this place when it used to be just about technologies.

Which comments are you talking about?

Re: GitHub under ongoing DDoS attack

#225
post #143

Earlier quoted context omitted.

Buh? Encryption is de-facto illegal in China. To the extent SSL is used, you can be sure that the government already has a copy of the master key. I've worked on Chinese deployed train systems, and we were banned from encrypting train control signals (signing was allowed, though), just in case someone might try to sneak in a political message in an ATO control telegram...

Not breaking encryption itself. Breaking encryption to serve malicious scripts.

So breaking encryption is accepted; serving malicious scripts is accepted (it's what happened in this attack), but breaking encryption to serve malicious scripts would be out of limits? That doesn't make much sense.

Re: GitHub under ongoing DDoS attack

#226
post #130
post #21

As a paying customer of Github I want them to know they have my undivided support in staying strong against "the bullies".

"Bully" is rather too weak a label for the perpetrator. This attack is criminal. If carried out by a sovereign nation, perhaps an act of war. We don't allow foreign raiding parties to enter our country to loot private businesses. Neither should we treat this attack as a simple act of "bullying". GitHub should get the full support of federal law enforcement, if not the military.

We should never take up arms for a thread that has no human casualties, especially when there are alternatives. If your neighbour enter your home uninvited, because the door is not locked, the first thing you do is ask nicely not to do that. The next thing you do is lock the door. You don't start shooting at them first ...

Re: GitHub under ongoing DDoS attack

#227

Interestingly enough, if the attacks never stop (which is a possibility), the engineers at GitHub might still come up with a way to effectively nullify DDOS and continue their normal operations. Which would be a massive advance in cyberdefense. It's unlikely, but it would be a great example of "natural selection" (via their intelligent engineers' efforts) at work. It will no doubt take ingenuity, but I don't think an…

Ha this is actually interesting. I'm doing a research project at school on DDOS mitigation with AITF. This seems like exactly something github could use right about now.

Re: GitHub under ongoing DDoS attack

#228
post #214

Earlier quoted context omitted.

> perhaps an act of war > GitHub should get the full support of federal law enforcement, if not the military. Are you sure you wanna go there? Think it through ;) Don't let me stop you though. Den Haag is lovely this time of year and I have this thing I want to talk over with you guys anyway.

This goes well into flamewar territory. Please stay on topic and be civil.

Calling for military intervention is not flamewar territory, that's real war territory. I admit that I might have phrased the comment a little too sarcastic, but still, it's very much on topic (and civil.)

Re: GitHub under ongoing DDoS attack

#229
post #144

Earlier quoted context omitted.

""Cybercrime"" and ""cyberterrorism"" resources are only deployed (a) for securing more funding (b) for expanding US surveillance or sometimes (c) on behalf of big donors like the copyright industry. The US has no interest in saying "international cyberattack should be illegal" because then other countries might insist that it stop. They could go for a trade war escalation, but that would at some point have Apple as…

That's not true at all, what the hell? Realize you're talking to folks who do this kind of stuff for a living, rather than just the random Internet denizens of most other websites. The FBI will regularly inform and assist companies who've been breached, for example. The US government is very interested in protecting US companies. That said, they don't quite have any guidance from congress on how to do that, so right…

When I was an admin of an IRC network we regularly reported large scale DDoS attacks to an FBI agent assigned to us. He didn't care. Some of those attacks took the network down for a while and resulted in many users moving to other networks. In at least two cases we even figured out the identity, address, and phone numbers of the people doing it and there was no movement on it.

Then one day one of the people we had the identity of boasted on how he had briefly brought down the website of one of the democratic primary candidates. We forwarded that information and our case was reassigned to another agent and the person was arrested immediately. I absolutely think it's true that the US government is only interested in protecting established and powerful figures. I suspect the reason is career driven - defending the little guys isn't glamorous and probably has no promotion impact.

Re: GitHub under ongoing DDoS attack

#230
post #130
post #21

As a paying customer of Github I want them to know they have my undivided support in staying strong against "the bullies".

"Bully" is rather too weak a label for the perpetrator. This attack is criminal. If carried out by a sovereign nation, perhaps an act of war. We don't allow foreign raiding parties to enter our country to loot private businesses. Neither should we treat this attack as a simple act of "bullying". GitHub should get the full support of federal law enforcement, if not the military.

I agree that it's criminal but that doesn't make it a terrible offense, and far from an "act of war". The damages to GitHub are probably minor in the long run. Nobody will have died or have even been injured. Any one violent crime would rank above this in severity imho.
Post reply on HN