DOS attack from PANAMSAT

Rob Thomas robt at cymru.com
Sat Jul 6 23:24:40 UTC 2002


Hello, Frank.

] Your upstreams, who will help you back-track.  Nobody DoS'es with their
] real IP's anymore.

Hmm, not according to the data I collect.  I track numerous botnets and
DoSnets, and a bit over 80% of them use the real IPs as the source of
the floods.  Then again, with 500 - 18000 bots, it isn't all that
necessary to mask the source IPs.  :/

Just my $.02, of course.

Thanks,
Rob.
-- 
Rob Thomas
http://www.cymru.com
ASSERT(coffee != empty);





More information about the NANOG mailing list