why LJ was down last night…

from lj-maint – (profanity edited out)

We got SYN flooded by a DDoS. 50 Mbps of incoming SYN packets isn’t good. Things broke.

We setup a bunch of firewall and rate limiting rules on the BIG/ip now, though. Shouldn’t happen (as easily?) again.

Whoever did it is a punk. These little d-less morons can’t break into the car, so they decide instead to slash its tires. Well now our tires have metal guards. incompetent sysadmins at the sites where the hacked machines were flooding from didn’t have their routers configured correctly, so the packets got out onto the net with forged source addresses.
– end quote

for more info about this sort of stuff –

http://packetstorm.securify.com/papers/contest/
http://staff.washington.edu/dittrich/misc/ddos/
http://packetstorm.securify.com/distributed/

the first link was back towards the very begining of DDoS existance. the latter are updated…

Weird.. I just did a post about good firewall software and DDos attacks… Maybe I should post about LJ’ers being given huge sacks of money?

Related Posts

  • A new buddy online!May 26, 2000 A new buddy online! Another local, this one more comfy with me reading posted stuff. MALAM is part of my […]
  • April 7, 2015 My sleepy boy. #catsoftheinternet #tabby #newton #naptrap http://ift.tt/1PdWQSS
  • December 17, 2008 9550 - Monday - The IDES OF DECEMBER!: BHK spent the day polishing off our shopping, I […]
  • May 19, 2008 S6301862
  • 9098 – mondayDecember 18, 2007 9098 – monday 9098 - monday Fuzzy look at the Christmas Tree through my weakening cell phone. Back […]

Leave a Reply