Jump to content

It's "DDoS"

 

It's essentially an interuption of a persons server making it impossible to reach by its users.

There is DistrubutedDenialOFService (DDoS) And Denial of service (DoS) DDoS is when a group of computers (Normally from a botnet) all send so many packets of data it will cause the conection to crash, a DoS attack is the same but with a single compter.

My current build - Ever Changing.

Number 1 On LTT LGA 1150 CPU Cinebench R15

http://hwbot.org/users/TheGamingBarrel

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218469
Share on other sites

Link to post
Share on other sites

It's not always DDoS. DoS also exists

 

There is DistrubutedDenialOFService (DDoS) And Denial of service (DoS) DDoS is when a group of computers (Normally from a botnet) all send so many packets of data it will cause the conection to crash, a DoS attack is the same but with a single compter.

 

oh ok

why do so many good cases only come in black and white

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218476
Share on other sites

Link to post
Share on other sites

Not all logs are accurate. I had my old router telling me I was getting port scanned every like 10min. Which was likly not true. 

 

I have also delt with DDos and have had a lot of time to study it. So I'll tell you what I know so far...

 

(Sit down for story time)

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218509
Share on other sites

Link to post
Share on other sites

Not all logs are accurate. I had my old router telling me I was getting port scanned every like 10min. Which was likly not true. 

 

I have also delt with DDos and have had a lot of time to study it. So I'll tell you what I know so far...

 

(Sit down for story time)

 

 

lol, im ready for story time

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218516
Share on other sites

Link to post
Share on other sites

If it is truly a DDOS there is not a lot you can do..

 

What you need to know is no matter what a DDOS attack can take down the best of servers if they hit it hard enough.

 

There are 2 aspects to an attack to take note of. The bandwidth of the attack and the packets sent. 

 

If someone hits you with 1Gbit/sec and you have a 10mbit internet plan the attack will occupy ALL of the space unless your ISP stops it themself. what this means is that you will not be able to download anything till the attack is gone.

The average router tried to reply to packets. and when it does the attack will be sent back occupying your upload speed aswell. Meaning you wont be able to get anything out of your network either.

 

___

The next thing to take not of is the packet amount. The more packets sent usually the more of your router's CPU is occupied. if your router hits 100% it will freeze all network usage.

A bigger router will allow you to defend against this however even if your router is at 1% cpu usage under an attack it can still occupy all of your bandwidth. 

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218540
Share on other sites

Link to post
Share on other sites

If it is truly a DDOS there is not a lot you can do..

 

What you need to know is no matter what a DDOS attack can take down the best of servers if they hit it hard enough.

 

There are 2 aspects to an attack to take note of. The bandwidth of the attack and the packets sent. 

 

If someone hits you with 1Gbit/sec and you have a 10mbit internet plan the attack will occupy ALL of the space unless your ISP stops it themself. what this means is that you will not be able to download anything till the attack is gone.

The average router tried to reply to packets. and when it does the attack will be sent back occupying your upload speed aswell. Meaning you wont be able to get anything out of your network either.

 

___

The next thing to take not of is the packet amount. The more packets sent usually the more of your router's CPU is occupied. if your router hits 100% it will freeze all network usage.

A bigger router will allow you to defend against this however even if your router is at 1% cpu usage under an attack it can still occupy all of your bandwidth. 

 

 

does this affect my bandwidth usage? my internt is up 100 GB's than normal at the moment.

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218547
Share on other sites

Link to post
Share on other sites

A bonus to having a good router is under an attack the only defense on your side is to DROP all the packets that are attacking you. This will leave your upload speed wide open and make your network appear to be offline. But attackers can be relentless. 

My router does this

 

My suggestion to you is to contact your internet provider and say you are being attacked and request them to change your IP address. 

Once you have done that keep your IP adress hidden! Skype is known to have an IP exploit that can give away a user's IP if an attacked knows a username.

 

VPNs are a great resource to hide your IP adress. 

With a virtual private network you connect to another network designed to transfer large amounts of data if someone looks up your IP with a skype exploit they will get the IP of the VPN's DataCenter. Not you. Any attacks will go to a huge network which should easily be able to stop the attack.

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218555
Share on other sites

Link to post
Share on other sites

Another thing that can be done is. If you have a HUGE upload and Download internet speed and a powerful router you can counter attack the attacker. 

 

(Take note) -> The attackers are normally random people. not the person that started the attack

 

By returning all the packets you can send enough packets to the routers that are attacking you to shut them down VIA a defensive DDOS.

 

This will take a powerful router, probably about a quad core+ router for a smaller attack-medium size attack. 

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218577
Share on other sites

Link to post
Share on other sites

Another thing that can be done is. If you have a HUGE upload and Download internet speed and a powerful router you can counter attack the attacker. 

 

(Take note) -> The attackers are normally random people. not the person that started the attack

 

By returning all the packets you can send enough packets to the routers that are attacking you to shut them down VIA a defensive DDOS.

 

This will take a powerful router, probably about a quad core+ router for a smaller attack-medium size attack. 

 

 

hahahha, no my dl is 6 mb and up is under 1 mbs

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218588
Share on other sites

Link to post
Share on other sites

I have had to deal with is so much. I just wish they didn't exist. Ask your Internet provider about DDOS protection. if they cant do that see if you can get a network administrators number so you can contact them to "Null route" your IP when your under an attack. What this will do it disconnect you from the internet. So nothing will get to you and not occupy your bandwidth. while your internet provider can see what size of a problem it is.

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218590
Share on other sites

Link to post
Share on other sites

Also a piece of advice! learn if you can ping your router! and if you can BLOCK PINGS! A common test to see if someone's network is up is to ping it. and if it says "Hello" the network is up. If you block Pings it will not say "Hello" to anyone trying to communicate.

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218600
Share on other sites

Link to post
Share on other sites

Also a piece of advice! learn if you can ping your router! and if you can BLOCK PINGS! A common test to see if someone's network is up is to ping it. and if it says "Hello" the network is up. If you block Pings it will not say "Hello" to anyone trying to communicate.

 

 

NPMrS2Z.png?1

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218634
Share on other sites

Link to post
Share on other sites

Please also take note that your firewall usually only blocks pings coming in from outside your home network. 

 

Internet -> |FireWall| -> Home network

 

Pinging from the inside doesn't actually test how other peoples see your network.

 

Computer -> Router -> Computer (Firewall never involved)

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218666
Share on other sites

Link to post
Share on other sites

Sadly, the only thing you can usually do in a (D)DoS attack is to contact your ISP and see if they will mitigate it on their end. Other than that, in a home environment, there's not much you can do.

15" MBP TB

AMD 5800X | Gigabyte Aorus Master | EVGA 2060 KO Ultra | Define 7 || Blade Server: Intel 3570k | GD65 | Corsair C70 | 13TB

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218699
Share on other sites

Link to post
Share on other sites

Sadly, the only thing you can usually do in a (D)DoS attack is to contact your ISP and see if they will mitigate it on their end. Other than that, in a home environment, there's not much you can do.

Yep its a sad thing that such a simple attack is so effective...

Link to comment
https://linustechtips.com/topic/234947-multiple-dos-attacks/#findComment-3218747
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×