Technology Review - Published By MIT
Advertisement

Political Net Attacks Increase

Denial-of-service attacks are on the rise, research shows.

By Erica Naone

Friday, March 13, 2009

smaller text tool iconmedium text tool iconlarger text tool icon

When armed conflict flared up between Russia and Georgia last summer, the smaller country also found itself subject to a crippling, coordinated Internet attack. An army of PCs controlled by hackers with strong ties to Russian hacking groups flooded Georgian sites with dummy requests, making it near impossible for them to respond to legitimate traffic. The attacks came fast and furious, at times directing 800 megabits of data per second at a targeted website.

User unfriendly: Simple interfaces for launching distributed denial-of-service attacks, like the one shown here, have made it easier to attack political enemies, says Jose Nazario, manager of security research for Arbor Networks.
Credit: Arbor Networks

This type of politically motivated Internet attack is becoming increasingly common, says Jose Nazario, manager of security research for Arbor Networks. "The problem is sweeping and has changed over the years," Nazario said during a presentation at the security conference SOURCE Boston this week. He noted that the frequency of these attacks and the number of targets being hit have grown steadily over the past few years.

The type of attack aimed at Georgian sites is known as a distributed denial of service (DDoS). Targeted servers face an overwhelming number of requests from computers located all over the world. Sometimes these requests come from "zombie" computers that have been taken over by hackers, and sometimes they come from machines operated by individuals who have volunteered to help. Last summer, the targets included government servers, and those belonging to news outlets and to companies trying to defend against the attacks.

Story continues below

Arbor Networks uses several technologies to monitor DDoS attacks. The company provides network security tools to Internet service providers and large enterprises, and customers can choose to share data on traffic patterns to help identify attacks as they happen. Nazario says that this customer data covers about 80 percent of global Internet backbone traffic. Arbor's researchers also use software tools to intercept commands that are intended for botnets, and they monitor Internet routing patterns for signs that an attack is taking place.

Nazario says that the bar for launching a DDoS attack has come down significantly in the past few years. Attacks aimed at Estonian sites in 2007 (during a time of political tension between this country and Russia) used botnets and scripts that weren't easy for nontechnical people to employ. Now attackers can purchase tools such as Black Energy or NetBot Attacker (made by Russian and Chinese hackers, respectively) for less than $100 apiece. These kits give an attacker ready-made code and an easy-to-use interface to control a botnet. Attackers have even developed Web interfaces so that volunteers can more easily participate in an attack. Attacks are often coordinated in forums, Nazario says, and easy-to-use interfaces help boost participation.

Comments

  • an alien invasion
    Although there may not be any "collaterall damage", that a traditional ground war incurs, as this article suggests, the rogue factors who are launching these DOS attacks have already demonstrated an ability to do some major damage to any target which is dependent on the Internet to perorm their functions. What's next, holding entire countries at ransom by threatening to crash their electrical grids, or disrupting air traffic control systems? And, if we found a way to retaliate against these jerks, would the whole sorry mess just escalate right out of control?
    Rate this comment: 12345

    phoenix
    03/13/2009
    Posts:172
    Avg Rating:
    3/5
  • Isn't It Time
    Doesn't this underscore the need for a new Internet, one that does not assume that the users are kindly scientists trading information?
    Rate this comment: 12345

    fiberman
    03/13/2009
    Posts:73
    Avg Rating:
    3/5
    • Re: Isn't It Time
      Yes!, absolutely. the average home user, pawn of the botmasters, possesses firepower that they are incapable of controlling. We don't allow access to the highways without requiring a minimum level of competence (and a recently inspected vehicle), for the safety of all who use them. Why should we do less with this infrastructure? I've outlined one possible approach at someblackthoughts.com
      Rate this comment: 12345

      theofraxis
      03/16/2009
      Posts:1
      Avg Rating:
      5/5
  • DOS attacks on Tea Parties
    Political DOS attacks already are occuring in US politics.  One Tea Party information site has repeatedly been hit by a DOS attack.  What we need is stronger investigation across geographical boundaries and much harsher penalties globally.
    Rate this comment: 12345

    RD
    03/31/2009
    Posts:114
    Avg Rating:
    3/5
  • I don't like to have politician website
    When someone has a server, it's better not to have politician website. Because, you can lost a lot of client to attack problems.


    Create a poll
    Rate this comment: 12345

    eramus33
    05/26/2009
    Posts:3
    Avg Rating:
    1/5

Log In

Forgot your password?     Register »
Advertisement

Videos

Making 3D Maps on the Move
Technology Review November/December 2009

Current Issue

Natural Gas Changes the Energy Map
The United States has vast supplies of this cleaner fossil fuel. But how should we use it?
Featured Content
Sponsored by:
White Papers

Twelve ways to reduce costs with SQL Server 2008
Find out how to reduce costs and get more efficient

Download

Total Economic Impact of SQL Server 2008 Upgrade
Forrester reports on increasing productivity and management capabilities

Download 

Achieving Cost and Resource Savings with UC
How Office Communications Server R2 and Exchange Server can make your business smarter and more efficient

Download 

The Compelling Case for Conferencing
Read how you can improve workload support and find IT efficiencies

Download

How Windows Server 2008 R2 Helps Optimize IT and Save you Money
Read how you can improve workload support and find IT efficiencies

Download

Windows Server 2008 R2 Hyper-V Live Migration
See how Windows Server 2008 R2 and Hyper-V enable virtualization and Live Migration

Download
Advertisement
Subscribe to Technology Review's daily e-mail update. Enter your e-mail address

TECHNOLOGY RESOURCES
Advertisement
MIT Massachusetts Institute of Technology © 2009 Technology Review. All Rights Reserved.