Archive for June, 2008

Spain Wins Euro 2008, Comes under DDoS Attack

June 30, 2008 by Jose Nazario

Spain went on to win Euro 2008, but after beating Russia last week 3-0, they came under a DDOS attack from a set of Black Energy botnets based in Argentina. The attacks lasted a few hours and didn’t seem to cause any substantial damage. There were no more attacks that we saw or identified following [...]

Read More

Fast Flux and New Domains for Storm

June 28, 2008 by Jose Nazario

At last week’s FIRST conference in Vancouver I presented on some of our ATLAS fast flux data. The slides aren’t yet available, but the ongoing reports in ATLAS have been reflected to continuously update some of the analysis we did. Some of the new reports include the lifetimes for each network, and the “distinct networks” [...]

Read More

The Great IGP Debate

June 23, 2008 by Danny McPherson

I was delighted to see this email last week posted to the IETF discussion list by my friend Ole Jacobsen (Editor & Publisher, The Internet Protocol Journal), indicating that ConneXions reports are now available online. Previously only available in scarce printed formatted, “CONNEXIONS–The Interoperability Report” includes 10 Volumes dating from 1987-1996. There’s [...]

Read More

The Tiger Effect

June 17, 2008 by Craig Labovitz

Internet Providers usually spend their time worrying about threats from
hackers, link failures, and router configuration errors. Yesterday,
though, many of them were worried about Tigers…
Starting around 9 am Pacific and peaking at 1:30 pm yesterday, many
ISPs noticed an unusual increase in traffic. At first, a few security
engineers worried they were under some type of new DDoS [...]

Read More

SNMP Scanning Increase

June 13, 2008 by Jose Nazario

A multi-vendor SNMPv3 security bug has been found and fixed in Net-SNMP 5.x. It turns out that a lot of vendors suffered the same issues, probably from commonly derived code. Vendors including Juniper, Cisco, and NetApp, among others, have been affected and have made updates available to customers. The bug is in the HMAC digest [...]

Read More