An apology to Keeping_It_Riel

If you have something so weird, strange or off-topic to post and think it doesn't belong in any other forum; you're probably right. Please put all your gormless, half-baked, inane, glaikit ideas in here. This might also be a place where we throw threads that appear elsewhere that don't belong ANYWHERE end up, instead of having to flush them. FORUM RULES STILL APPLY.
User avatar
LTO
Expatriate
Posts: 1383
Joined: Wed May 14, 2014 10:28 pm
Reputation: 9
Location: KH
Contact:

Re: An apology to Keeping_It_Riel

Post by LTO »

OrangeDragon wrote:As I'd said in the arena when I thought it was KiR... it's not a high brain operation. You can literally google "rent a DDoS" and get a ton of resources telling you how to go rent one from people who ARE tech wizards for like $3-4 an hour. Crazy cheap, crazy easy.
If it's that cheap and easy, given how much time and effort some people put into sock puppets, trolls and spamming their personal internet obsession, I'm surprised this sort of attack doesn't happen more often.
LTO Cambodia Blog

"Kafka is 'outdone' in our country, the new fatherland of Angkor" - Norodom Sihanouk
OrangeDragon
Site Admin
Posts: 4193
Joined: Fri May 02, 2014 8:05 pm
Reputation: 17
United States of America

Re: An apology to Keeping_It_Riel

Post by OrangeDragon »

LTO wrote:
OrangeDragon wrote:As I'd said in the arena when I thought it was KiR... it's not a high brain operation. You can literally google "rent a DDoS" and get a ton of resources telling you how to go rent one from people who ARE tech wizards for like $3-4 an hour. Crazy cheap, crazy easy.
If it's that cheap and easy, given how much time and effort some people put into sock puppets, trolls and spamming their personal internet obsession, I'm surprised this sort of attack doesn't happen more often.
Fear of getting caught stops a lot of people. Damages can be sued for, and a lot of countries have laws against such attacks (though not all). Many of the sources for renting them are actually sting operations by police.

On top of that, sites that use multiple farmed servers (like FB/Youtube/etc) are much harder to take down... as are sites that use a DNS layer protection like we now have. As I said as it was beginning to recover, I'd actually started the protection process the day before it happened, but got tired and never finished it. Had it come a day later we wouldn't have even faltered and the effort would have been wasted. Unless they sprung for a much more powerful and planned out attack that is... which would then cost a lot more money than a simple flood attack.

Many also hold the belief that it's more difficult than it is, so don't bother to even check into it. And many want to be able to claim credit for the disruptions they cause, which they can't do it they did them illegally.
BOFH
Expatriate
Posts: 957
Joined: Wed Nov 19, 2014 10:27 am
Reputation: 3

Re: An apology to Keeping_It_Riel

Post by BOFH »

OrangeDragon wrote:Unless they sprung for a much more powerful and planned out attack that is... which would then cost a lot more money than a simple flood attack.
Not necessarily. See spoofed source ipnum based amplification attacks in general, such as DNS/NTP:

http://blog.cloudflare.com/technical-de ... os-attack/
https://www.us-cert.gov/ncas/alerts/TA13-088A
OrangeDragon wrote:On top of that, sites that use multiple farmed servers (like FB/Youtube/etc) are much harder to take down...
Sometimes those very same services can be used to bite you in the ass. http://chr13.com/2014/03/10/using-googl ... y-website/

And let's not forget that not every DoS is network flood based, service crashes and socket locks (RFC 1337 TCP NET_WAIT hazard, e.g.) exist.
OrangeDragon
Site Admin
Posts: 4193
Joined: Fri May 02, 2014 8:05 pm
Reputation: 17
United States of America

Re: An apology to Keeping_It_Riel

Post by OrangeDragon »

BOFH wrote:
OrangeDragon wrote:Unless they sprung for a much more powerful and planned out attack that is... which would then cost a lot more money than a simple flood attack.
Not necessarily. See spoofed source ipnum based amplification attacks in general, such as DNS/NTP:

http://blog.cloudflare.com/technical-de ... os-attack/
https://www.us-cert.gov/ncas/alerts/TA13-088A
but even with that, cloudflare is on top of it and mitigating it. fantastic service really. and just verified we're not an open NTP relay.
BOFH wrote:
OrangeDragon wrote:On top of that, sites that use multiple farmed servers (like FB/Youtube/etc) are much harder to take down...
Sometimes those very same services can be used to bite you in the ass. http://chr13.com/2014/03/10/using-googl ... y-website/

And let's not forget that not every DoS is network flood based, service crashes and socket locks (RFC 1337 TCP NET_WAIT hazard, e.g.) exist.
[/quote]
haha, that google attack is priceless. of course the cloudflare "no hotlinking" should probably prevent it from impacting the server.

Those other attacks are a little more sophisticated, and likely would cost the renter significantly more. nothing is 100% hack proof unless it's unplugged and sitting in a closet, but hiding behind cloudflare (with the new IP and closed sown zone rules to keep it that way) and a decent firewall setup seems to do a really good job of cutting off most of it.
User avatar
Hotdigr
Expatriate
Posts: 1182
Joined: Tue May 13, 2014 12:22 pm
Reputation: 180

Re: An apology to Keeping_It_Riel

Post by Hotdigr »

...look what the fukn cat dragged in... [Most of this post deleted by mod. Mackevili]
User avatar
Digg3r
Expatriate
Posts: 1642
Joined: Wed May 14, 2014 8:55 pm
Reputation: 57
Korea North

Re: An apology to Keeping_It_Riel

Post by Digg3r »

Hotdigr wrote: ...look what the fukn cat dragged in... [Most of this post deleted by mod. Mackevili]
On the turps again?

I hope so or your level of literacy is much lower than I previously thought. And I didn't think there was much to begin with...
User avatar
Hotdigr
Expatriate
Posts: 1182
Joined: Tue May 13, 2014 12:22 pm
Reputation: 180

Re: An apology to Keeping_It_Riel

Post by Hotdigr »

Yeah mate, so pissed I can't see straight. You don't know me or my life cob, so why comment...[Most of this post deleted by mod. Mackevili]
User avatar
StroppyChops
The Missionary Man
Posts: 10598
Joined: Tue May 06, 2014 11:24 am
Reputation: 1032
Australia

Re: An apology to Keeping_It_Riel

Post by StroppyChops »

Image
Bodge: This ain't Kansas, and the neighbours ate Toto!
Francis
Expatriate
Posts: 1116
Joined: Sun Aug 10, 2014 12:29 am
Reputation: 0
Vietnam

Re: An apology to Keeping_It_Riel

Post by Francis »

Well Dig3r, actually we are talking about a very sensitive, but important issue here. Let's see whether the posters here can solve the problem in a civilized way. And I agree with Hotdigr.......the problem HAS to be solved.
Und der Haifisch der hat Tränen
Und die laufen vom Gesicht
Doch der Haifisch lebt im Wasser
So die Tränen sieht man nicht

In der Tiefe ist es einsam
Und so manche Träne fliesst
Und so kommt es dass das Wasser
In den Meeren salzig ist
User avatar
Digg3r
Expatriate
Posts: 1642
Joined: Wed May 14, 2014 8:55 pm
Reputation: 57
Korea North

Re: An apology to Keeping_It_Riel

Post by Digg3r »

Hotdigr wrote:Yeah mate, so pissed I can't see straight. You don't know me or my life cob, so why comment... [Most of this post deleted by mod. Mackevili]
I'm just a poster that's noticed you've done the whole keyboard warrior thing when you've been pissed before. Aye..

True, I don't know you. I never will. I hope for the sake of others that do know you that you're very different irl than you are on here.

Aye

If you don't want comments save it for PM. No one is impressed by the way.
Post Reply Previous topicNext topic
  • Similar Topics
    Replies
    Views
    Last post

Who is online

Users browsing this forum: No registered users and 704 guests