Author Topic: How to Launch a 65Gbps DDoS, and How to Stop One  (Read 2463 times)

0 Members and 1 Guest are viewing this topic.

Offline Satan911

  • VIP
  • Knight
  • *
  • Posts: 289
  • Cookies: 25
  • Retired god/admin
    • View Profile
How to Launch a 65Gbps DDoS, and How to Stop One
« on: September 18, 2012, 08:07:50 am »
http://blog.cloudflare.com/65gbps-ddos-no-problem

Good read. Feel a bit ashamed I never heard of the reflection technique.. It is quite interesting.
Satan911
Evilzone Network Administrator

Offline Stackprotector

  • Administrator
  • Titan
  • *
  • Posts: 2515
  • Cookies: 205
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #1 on: September 18, 2012, 10:24:26 am »
That shit is cool, cloudfare is also a very good services from what i hear.
~Factionwars

Offline ande

  • Owner
  • Titan
  • *
  • Posts: 2664
  • Cookies: 256
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #2 on: September 18, 2012, 04:24:18 pm »
This has been a problem from some time. First time I heard of this is probably a few years back. Funny how this is still a problem..
if($statement) { unless(!$statement) { // Very sure } }
https://evilzone.org/?hack=true

Offline namespace7

  • Sir
  • ***
  • Posts: 561
  • Cookies: 115
  • My Brother's Keeper
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #3 on: September 18, 2012, 04:58:51 pm »
This has been a problem from some time. First time I heard of this is probably a few years back. Funny how this is still a problem..

And it will still be a problem for many years to come. Just look at this data, and it is not even complete. Service providers are usually very lazy and don't want to invest money in anything that won't bring them money.
"A programmer’s greatest enemy isn’t the tools or the boss or the artists or the design or the legacy code or the third party code or the API or the OS. A programmer’s greatest enemy is getting stuck.
Therefore a crucial step to becoming a better programmer is learning how to avoid getting stuck, to recognize when you’re stuck, and to get unstuck." -Jeff Wofford

Offline Ullen

  • Peasant
  • *
  • Posts: 65
  • Cookies: 5
  • I may be down, but i'm not out!!
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #4 on: September 18, 2012, 05:31:52 pm »
Can anyone please explain more about "open resolvers" 
"The only real wisdom is knowing you know nothing"

Offline puddi

  • Voted Best Avatar
  • VIP
  • Royal Highness
  • *
  • Posts: 662
  • Cookies: -2074
  • Stop being a fag today!Join #puddimasterrace @ IRC
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #5 on: September 18, 2012, 06:22:13 pm »

:)

Do you got a cool story you would like to share bro?

The following users thanked this post: puddi

Offline namespace7

  • Sir
  • ***
  • Posts: 561
  • Cookies: 115
  • My Brother's Keeper
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #6 on: September 18, 2012, 07:51:15 pm »
Can anyone please explain more about "open resolvers"

It is nothing complicated. Just a DNS resolution service that also accepts requests from external sources, rather then just identified clients. What it does is listens for someone (anyone) to send a request to it (on port 53 usually) which might ask it to do something useful (like resolve a domain name and return a corresponding IP address) or something malicious (like return a huge number of DNS records to a target that you want to DoS). Because UDP (which is one-way in a sense) is usually used to send the request packets to the resolver and because the resolver allows anyone without identification to submit recursive queries, you can fake the sender IP in the header of the packet and the DNS resolver will send the stuff you or anyone else requested  to the IP you specify in the header of the packet. So basically you can use the OpenDNS service to help you DDoS your target.

Of course openDNS service providers can do quite a lot to protect against such attacks, but many don't bother to.

Hope this helps. If you want to know more about how the technology actually works, just get some book on DNS and it should have everything you wanna know.
"A programmer’s greatest enemy isn’t the tools or the boss or the artists or the design or the legacy code or the third party code or the API or the OS. A programmer’s greatest enemy is getting stuck.
Therefore a crucial step to becoming a better programmer is learning how to avoid getting stuck, to recognize when you’re stuck, and to get unstuck." -Jeff Wofford

Offline Polyphony

  • VIP
  • Knight
  • *
  • Posts: 178
  • Cookies: 23
    • View Profile
Re: How to Launch a 65Gbps DDoS, and How to Stop One
« Reply #7 on: September 19, 2012, 01:23:58 am »
clever ways of amplifying and spoofing the source IP.  A freaking 65Gbps DDoS would be unbearable lol I guess CloudFlare has it under control though.
Code: [Select]
<Spacecow_> for that matter I have trouble believing bitches are made out of ribs
<Gundilido> we are the revolutionary vanguard fighting for the peoples right to display sombrero dawning poultry
<Spacecow> did they see your doodle?
<~phage> Maybe
<+Unresolved> its just not creative enough for me
<+Unresolved> my imagination is to big to something so simple