Saturday, February 15, 2014

6:16 PM
Good day!

I've been seeing a lot of questions lately about this on any popular networking sites and have gathered some useful informations about this attacks that you might like to know. First DoS and DDoS attacks are mostly used by script-kiddies. Probably they got pissed that they can't got into a single webserver so they started nuking or DoS attacking it.

Attackers which uses these kind of attacks belong to the group of script-kiddies. Most of the time this boys just download a programs from cracking-groups or forum websites and use them to annoy other user's or web server.

The other thing is a DDoS attack(Distributed Denial Of Service). This form of attacks are targeting server with multiple or different computers. With this kind of attack you can take down major systems like Paypal, Yahoo, or any Gov't websites. To take down some enumerated major systems you need a lot of knowledge and have to work with others as well. This isn't the layer of script-kiddies anymore.

The three most popular tools for DoS or DDoS(if perform by groups) are:

1.) LOIC (Low Orbit Ion Canon)

LOIC is an open source network stress testing and denial-of-service attack application, written in C#. LOIC was initially developed by Praetox Technologies, but was later released into the public domain, and now is hosted on several open source platforms.




2. XOIC

 XOIC is another nice DOS attacking tool. It performs a DOS attack on  any server with an IP address, a user-selected port, and a user-selected protocol.



 
3. HULK (HTTP Unbearable Load King)

HULK is a web server denial of service tool written in python for research purposes. It is designed to generate volumes of unique and obfuscated traffic at a webserver, bypassing caching engines and therefore hitting the server's direct resource pool.

hulk.py


The recent DDoS attacks were all done by the Anonymous Hacktivists and takes down major systems like MasterCard, Visa, and Paypal.

The most used type are UDP, TCP, and HTTP flood. In this case the victim's server was attacked by the flood request on port 80 (http).




Some useful information:

The first (big) DDoS attacks was in US and European.


Multiple reports suggest the largest ever DDoS attack - peaking at 400Gbps - has hit targets in the US and Europe though who is behind the attack, and who the victims were remains a mystery. read more...



0 comments:

Post a Comment