Hugo's Blog

#internet

What BCP38 Can and Cannot Do

We're coming through what is seeming like a tipping point in the history of DDoS on the Internet. Rather than targeting a company or online gaming, one of the largest DDoS attacks ever targeted an individual, Brian Krebs, most likely for his work exposing a so-called "booter service", a DDoS-for-hire outfit called vDOS, which ultimately led to the alleged proprietors being arrested…
·
What BCP38 Can and Cannot Do

Clarifying DDoS-related terms

I'll be writing a bit more about DDoS attacks and security, and so I thought it would be handy to jot down some commonly used terms in one place. I'll also look at how some of those terms are interrelated…
·
Clarifying DDoS-related terms

GRE Reflection?

Recently, we're seeing an uptick in GRE traffic as part of a DDoS mix. Most prominently, GRE featured as the biggest volume contributor in the record 600+ Gbps attack on krebsonsecurity.com. (Note that the site is currently offline as it's finding a new home, so any links to krebsonsecurity.com will reference The Internet Archive instead.)…
·
GRE Reflection?