Haggis Veteran Posted March 28, 2013 Veteran Share Posted March 28, 2013 Have you guys noticed a slowdown in loading of a lot of major sites in the last few days Now all over the new they are talking about the amount of data being flooded in Spamhaus way is affecting legit webpage such as Natwest and RBS Has anyone else noticed a difference Link to comment Share on other sites More sharing options...
n_K Posted March 28, 2013 Share Posted March 28, 2013 I read up on yesterday and read some articles on cyberbunker's site, ironically the only site going slow for me was theirs. Link to comment Share on other sites More sharing options...
MikeChipshop Member Posted March 28, 2013 Member Share Posted March 28, 2013 Nope, not noticed any difference at all. But that's probably because my connection is s***house anyway and couldn't get much worse. Link to comment Share on other sites More sharing options...
The Teej Posted March 28, 2013 Share Posted March 28, 2013 It might just be coincidence but I've noticed quite a few pages loading slower, as well as my download speed being affected quite dramatically. Then again, I've also been on the receiving end of internet connection issues anyway, so maybe it's just that. It's a little disconcerting that an external group of people can literally make the internet crawl to a halt. I didn't think that was feasible. Link to comment Share on other sites More sharing options...
Kami- Posted March 28, 2013 Share Posted March 28, 2013 Nope, working fine for me... CloudFlare are doing an exceptional job at mitigating the DDoS against Spamhaus (especially when it has been hitting upto ~300Gbps). <snip> It's a little disconcerting that an external group of people can literally make the internet crawl to a halt. I didn't think that was feasible. Well, they're using an ampliication technique on the way DNS handles UDP requests to multiple the attack bytes... so yes it's feasible to grind things to a halt. Link to comment Share on other sites More sharing options...
hutchinson_1989 Posted March 28, 2013 Share Posted March 28, 2013 It might just be coincidence but I've noticed quite a few pages loading slower, as well as my download speed being affected quite dramatically. Then again, I've also been on the receiving end of internet connection issues anyway, so maybe it's just that. It's a little disconcerting that an external group of people can literally make the internet crawl to a halt. I didn't think that was feasible. My Internet connection speed dropped by over 50% this week, never happened before at those particular times of the day. Could be coincidence. Link to comment Share on other sites More sharing options...
Haggis Veteran Posted March 28, 2013 Author Veteran Share Posted March 28, 2013 It's a little disconcerting that an external group of people can literally make the internet crawl to a halt. I didn't think that was feasible. They are using a DNS reflection attack A DNS amplification attack (aka DNS reflection attack) is a type of distributed denial of service (DDos) attack that takes advantage of the fact that a small DNS query can generate a much larger response. When combined with source address spoofing, an attacker can direct a large volume of network traffic to a target system by initiating relatively small DNS queries.The amplification factor in this type of attack depends on the type of DNS query and whether or not a DNS server (used as a middleman in the attack) supports sending large UDP packets in a response, which is a feature intended to optimize DNS communications. If a DNS server does not support large (>512 bytes) UDP packets in a response, it can revert to TCP. This reduces the effectiveness of an amplification attack because TCP is much less vulnerable to source address spoofing. The Teej 1 Share Link to comment Share on other sites More sharing options...
The Teej Posted March 28, 2013 Share Posted March 28, 2013 They are using a DNS reflection attack I have now learned something today! Thank you! Link to comment Share on other sites More sharing options...
Teebor Posted March 28, 2013 Share Posted March 28, 2013 Its not that big a deal, its only Spamhaus that are really feeling the pain of it. Pretty much everyone else shouldn't notice anything The media is hyping it up, much like how the internet survives an earthquake. Its the internet, lots of interconnected nodes, if one bit breaks (which happens almost daily) the rest carries on until that bit comes back - look up BGP for more information about routing on the internet. Worst case scenario is that a link between one location and another that has no redundancy goes down, in which case that part is cut off from the rest until service is restored. In the case of this Spamhaus attack it might mean a website is responding a bit slower as the traffic on a particular link is heavy, but you will only really notice if you are accessing something over one of those links. Most likely people in America haven't noticed a thing especially if they are only accessing local US websites Link to comment Share on other sites More sharing options...
Recommended Posts