CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 952
Comments: 28
block bottom
spacer spacer

CastleCops under DDoS and what we did
Goto page Previous  1, 2, 3, 4, 5, 6, 7, 8, 9  Next
 
Post new topic   Reply to topic       All -> FavForums -> General Site [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
Arenlor

Lieutenant
Lieutenant


Joined: Feb 25, 2006
Posts: 258
Location: USA

PostPosted: Wed Feb 28, 2007 8:10 pm    Post subject:
Reply with quote

Drexel College, we got hit while having PGSIST there and we traced back and ran a DDoS back at them to stop them. I can see if I can contact those that go there and see if they're willing to attack again.


_________________
Who is this General Fault and why is he trying to read my HDD?
Back to top
View users profile Send private message Send email Visit posters website AIM Address Yahoo Messenger MSN Messenger
Cudni

Special Response Team


Joined: Dec 10, 2002
Posts: 3683
Location: Et In Arcadia ego
MIRT MVP SRT

PostPosted: Wed Feb 28, 2007 8:22 pm    Post subject:
Reply with quote

attacking back is not a good idea because:

Robin wrote:
Mere_Mortal wrote:
Surely this is costing them as much it is you. Don't get me wrong, this will no doubt hurt your own in many ways, but they're obviously using a fair network to sustain the attack and collectively using a lot of electricity.

Now, previously being a Fire Fighter, you most likely disagree with the concept of fighting fire with fire (unless you're putting out a forest fire of course), but surely...if you were to bounce the traffic back to the source, wouldn't that effectively cause a DDoS upon them?

By the way, that video on 9/11 was very touching, so well made.


Several folks have suggested we turn the traffic around on them. The problem is all the systems involved are basically victims too. If we turned the traffic around the potential for large scale collateral damage is pretty big.



Cudni


_________________
Hecho en Mexico
Back to top
View users profile Send private message Visit posters website
Bill_Bright

General
General
Premium Member

Joined: Jan 16, 2004
Posts: 8964
Location: Nebraska, USA
MVP Premium

PostPosted: Wed Feb 28, 2007 8:26 pm    Post subject:
Reply with quote

I don't see flooding the network with another DDoS attack as appropriate. Since the bandwidth to the offender is NOT dedicated, other innocent folks will suffer as well, because their network performance is affected. Two wrongs don't make a right. Inflicting collateral damage is not acceptable.

Ripping the fingernails out of a hackers typing fingers may sound justified, but it is not. Sadly, it is the goodguys who have to do things the hard way.


_________________
image Bill, AFE7Ret
Freedom is NOT Free!

image
Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Wed Feb 28, 2007 8:54 pm    Post subject:
Reply with quote

Maybe a wiki article can address this?


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
PAN_IRISH

Major
Major
Premium Member

Joined: Feb 01, 2007
Posts: 1004

Premium

PostPosted: Wed Feb 28, 2007 10:17 pm    Post subject:
Reply with quote

Arenlor,
i sympathise with your feelings to get even,
but;

Attacking the bad guys using their own tactics just gets you into the realm they want you in.
do not engage in illegal activity, or any other activity that is vengeful.
it leads to more trouble for all.

for complaints about the bad guys there are resources available at the internet crime complaint commission.
http://www.ic3.gov/

let the EXPERTS deal with the criminals.

they have the power to ask for the legal use of wiretapping and other means to prosecute the perpetrators of internet crimes.

Back to top
View users profile Send private message
Bill_Bright

General
General
Premium Member

Joined: Jan 16, 2004
Posts: 8964
Location: Nebraska, USA
MVP Premium

PostPosted: Wed Feb 28, 2007 11:23 pm    Post subject:
Reply with quote

General Failure?


_________________
image Bill, AFE7Ret
Freedom is NOT Free!

image
Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Wed Feb 28, 2007 11:54 pm    Post subject:
Reply with quote

Minor blips, I'm working...


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
oblueterator

Blue Angel
SIRT Handler

Joined: Apr 03, 2006
Posts: 303

Blue Security Team F@H

PostPosted: Thu Mar 01, 2007 12:04 am    Post subject:
Reply with quote

Paul wrote:
Minor blips, I'm working...


Yeah, that's great!

Meanwhile, you feed my paranoia every time I get an "Access Denied" error message. Confused Rolling Eyes Wink

Back to top
View users profile Send private message
Bill_Bright

General
General
Premium Member

Joined: Jan 16, 2004
Posts: 8964
Location: Nebraska, USA
MVP Premium

PostPosted: Thu Mar 01, 2007 1:38 am    Post subject:
Reply with quote

oblueterator wrote:
Paul wrote:
Minor blips, I'm working...


Yeah, that's great!

Meanwhile, you feed my paranoia every time I get an "Access Denied" error message. Confused Rolling Eyes Wink
Exactly. But is that sad, ...or pitiful? Embarassed


_________________
image Bill, AFE7Ret
Freedom is NOT Free!

image
Back to top
View users profile Send private message
Bill_Bright

General
General
Premium Member

Joined: Jan 16, 2004
Posts: 8964
Location: Nebraska, USA
MVP Premium

PostPosted: Sat Apr 14, 2007 3:45 am    Post subject:
Reply with quote

What is the status of getting the site back to pre-attack performance levels? We are still not there. Rarely do the best load times match pre-attack performance levels. Most of the time, load times are just adequate at best, poor at other times. Images still frequently do not load completely.

Current performance detracts from the virtues of the site, and creates an unwelcomed frustration level when assisting posters seeking help.

97ppm Engine
ALL(8.787s) phpbb(8.642s) SQL(8.536s) FUNC(0.003s) MARKER(0.068s) GT(0.071s) PT(0s)

98ppm Engine
ALL(23.971s) phpbb(23.434s) SQL(23.32s) FUNC(0.004s) MARKER(0.076s) GT(0.397s) PT(0s)

101ppm Engine
ALL(15.588s) phpbb(15.052s) SQL(14.94s) FUNC(0.004s) MARKER(0.274s) GT(0.253s) PT(0s)

Related thread: site is slowing down


_________________
image Bill, AFE7Ret
Freedom is NOT Free!

image
Back to top
View users profile Send private message
Ikeb

Special Response Team
Forums Admin

Joined: Apr 20, 2003
Posts: 16515

Forums Admin Moderators MVP Premium SRT Team CC Committee Team F@H

PostPosted: Sat Apr 14, 2007 5:03 am    Post subject:
Reply with quote

It is frustratingly slow at times though I find that, on average, it's fairly quick. Once in a while it just goes out to lunch for 30 seconds to a minute. Confused

Also I find that on first access, the wiki is very slow, but on successive accesses, it's reasonably speedy ... though not as lightning fast as it used to be. Confused

Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Sat Apr 14, 2007 1:15 pm    Post subject:
Reply with quote

I'm planning an outage in the next week in order to do some performance measures.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
Bill_Bright

General
General
Premium Member

Joined: Jan 16, 2004
Posts: 8964
Location: Nebraska, USA
MVP Premium

PostPosted: Sun May 06, 2007 9:58 pm    Post subject:
Reply with quote

I see there's a "Tiny possibility" of a server move this evening - is that (hopefully) to address the continuing problem of frequent slow load times? We are still not back to pre-attack performance levels and images still frequently do not load completely.

Another oddity is with post previews - I get a page not found error that appears in the Topic Review Section of the preview page. A refresh clears it, but it is a distraction.


_________________
image Bill, AFE7Ret
Freedom is NOT Free!

image
Back to top
View users profile Send private message
Paul

CastleCops Founder


Joined: Feb 22, 2002
Posts: 27351

Administrators Firetrust Forums Admin MIRT Moderators MVP Phishing Squad Premium Team CC Committee

PostPosted: Sun May 06, 2007 10:01 pm    Post subject:
Reply with quote

Yes that was the plan, but in fact it won't happen tonight. Looking forward to making it happen hopefully this week.


_________________
Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
Back to top
View users profile Send private message Send email Visit posters website
Bill_Bright

General
General
Premium Member

Joined: Jan 16, 2004
Posts: 8964
Location: Nebraska, USA
MVP Premium

PostPosted: Sun May 06, 2007 10:54 pm    Post subject:
Reply with quote

Great. Thanks.


_________________
image Bill, AFE7Ret
Freedom is NOT Free!

image
Back to top
View users profile Send private message
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> General Site All times are GMT
Goto page Previous  1, 2, 3, 4, 5, 6, 7, 8, 9  Next
Page 8 of 9

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer