DDoS: One Against Many
Get RSS Feed
March
01
2011
ddos

UPDATE: There seems to bee some confusion regarding the severity of the events described in this article. Before reading further, please take note that our server was not hacked, nor was any hacking attempt detected during this event (yes, we monitor for that). This event was simply the result of a sudden and directed increase in the number of connections being made to our server.

It's never a fair fight when a group gangs up on one guy; unfortunately, that's exactly what happened to us, twice, today. It's called DDoS, which stands for Distributed Denial of Service, and it's what you get when a malicious hacker takes control of dozens, hundreds, thousands, sometimes even millions of computers, and directs them all to attack one server.

How does it happen?

In case you've ever wondered why people bother writing viruses, let me tell you that this is a huge reason for it. Many viruses do mainly three things:

  1. Find other vulnerable computers to infect so they can spread as far and wide as possible.
  2. Listen for commands from whoever created the virus.
  3. Carry out those commands without question or regard for the consequences. After all, computers just do what they're told.

A computer infected with such a virus is commonly referred to as a bot. A network of such infected computers is called a botnet. There are currently about 30 known active botnets in existence, each ranging from several hundred to several million infected machines, any and all of which may be called to attack any server at any moment.

Unfortunately, due to the widespread nature of such attacks, there's no single user who can be blocked in order to stop the attack and, even if all the offending computers were blocked, the attacker would simply call on more bots to join in the attack.

Our attack appeared to be comprised of some 300 or so bots, each of which would basically open several connections to our server and just sit there until the server quit listening for a command, effectively tying up every available connection so that legitimate users could not access their sites. Since the bots never made any actual requests, we are unable to determine which site or sites the attack was being directed toward.

What can be done?

Since today's attacks, we've been in contact with network technicians at the datacenter where our server resides regarding ways to minimize the effect of any future attacks. Unfortunately, the only real solution is to disable the botnets used in the attacks and that requires the cooperation of every internet user. Have you run a virus scan lately?


| More

Leave a Comment

Name*
Email Help Tip
Website
Comment*
Characters Remaining: 5000
   
Return to Blog Home Page
Archives
April 6, 2012

Say Hello to Siggstein, the Newest Member of our Free Design Family

We released a new free design skin that we hope you love. Part museum exhibit, part fashion spread, the Siggstein is designed to show off beautiful images and is ideal for portfolios, retail and ...

April 6, 2012

Preview Your Site before Switching Designs

Great news for those of you that lack grand Pixar-esque imaginations. We've revamped the Switch Design Skins page in the Admin, so you can see the designs better and choose color themes. We've also ...

April 6, 2012

Shiny New Design Preview Controls

So... we redesigned the Design Preview controls so that they float on the top of the page. We're also showing the colors of the different themes for each design skin (it's more visual). Have a look ...

March 29, 2012

Design Preview on Demo Sites

Chadwick Meyer
We've add Design Preview controls on all our demo sites, which let you see the same website in different design skins. Some of our skins have several theme options, and you can toggle between these ...

March 15, 2012

Ecommerce Tracking with Google Analytics

We are in the process of adding more features to integrate your site with Google Analytics' powerful tracking capabilities. We've just added some standard conversion tracking for account creation, ...

2012 Archives

Jan Feb Mar Apr
May Jun Jul Aug
Sep Oct Nov Dec

2011 Archives

Jan Feb Mar Apr
May Jun Jul Aug
Sep Oct Nov Dec

2010 Archives

Jan Feb Mar Apr
May Jun Jul Aug
Sep Oct Nov Dec

2009 Archives

Jan Feb Mar Apr
May Jun Jul Aug
Sep Oct Nov Dec

2008 Archives

Jan Feb Mar Apr
May Jun Jul Aug
Sep Oct Nov Dec

Full Archives

Tags