AS9498 Bharti BGP hijacks

Youssef Bengelloun-Zahr bengelly at gmail.com
Sat Apr 1 22:09:41 UTC 2017


Hi,

What's more concerning here is that those prefixes were able to pass through all filters on their way, via their transits and maybe probably via their peers as well. Haven't we been here before !?!

And here I thought 2017 internet would be a "safer" place. Silly me...

Y.



> Le 1 avr. 2017 à 23:33, Job Snijders <job at instituut.net> a écrit :
> 
> Hi all,
> 
> Perhaps another explanation is that these are router2router linknets
> between the involved parties, and all we are seeing is the effect of
> "redistribute connected". If this is the case, the word "hijack" might be
> somewhat strong worded.
> 
> Kind regards,
> 
> Job
> 
> On Sat, 1 Apr 2017 at 23:25, Tyler Conrad <tyler at tgconrad.com> wrote:
> 
> So not only are they hijacking prefixes, they're leaking the  /30s to their
> peers. Failure through and through.
> 
> On Saturday, April 1, 2017, George William Herbert <george.herbert at gmail.com
> wrote:
> 
>> 
>> Hey, Bharti, knock that off.
>> 
>> http://bgpstream.com/event/78126
>> http://bgpstream.com/event/78125
>> http://bgpstream.com/event/78124
>> http://bgpstream.com/event/78123
>> http://bgpstream.com/event/78122
>> 
>> 
>> Sent from my iPhone
>> 



More information about the NANOG mailing list