Subscribe to Windows IT Pro

 

Get Newsletters

  • Get the Latest News
  • Product Updates
  • Helpful Tricks
  • Productivity Tips

Subscribe Now!

February 23, 2007 12:00 AM

CastleCops Endures DDoS Attack

Windows IT Pro
InstantDoc ID #95283
Rating: (1)

CastleCops, an online security community whose charter is to help fight malware and phishing scams, fell under Distributed Denial of Service attacks (DDoS) beginning February 13. The attack was so serious that it completely knocked out the network of CastleCops' ISP. By February 15, the "command center" controlling the botnet used to launch the attack was identified and blocked, and CastleCops came back online. But the attacks didn't stop.

On February 19, CastleCops experienced approximately 969Gbps of incoming network traffic. The attack tapered off over the course of an hour and then spiked again a few hours later to just over 350Mbps. Then on February 20, traffic spiked once more, reaching just over 993Mbps. That attack quickly tapered off to a steady 44Mbps.

Paul Laudanski, founder of CastleCops and Microsoft MVP, said that such an attack could have cost as much as $33,000 due to bandwidth charges. Fortunately, CastleCops wasn't made to pay that rate, otherwise the site would have probably gone offline permanently, according to Laudanski.

Antispam company Blue Security underwent a similar DDoS attack in May 2006. A former moderator for the company said that a Russian spammer known as PharmaMaster paid $2,000 an hour to have the attack aimed at Blue Security. The attack eventually led Blue Security to cease its crusade against spam.

Related Content:

ARTICLE TOOLS

Comments
  • Dave
    5 years ago
    Feb 28, 2007

    My first thought was that 969Gbps should have taken down more than just one ISP, but then it turned out it was "only" 969Mbps.

You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

White Papers

Get your Windows 7 deployment off to the right start by implementing PC lockdown. A locked-down environment is easier and cheaper to support since users are less likely to make unnecessary changes to the core system configuration - read more here!

Essential Guides

Is your iSCSI "lossy"? The reality is that most off-the-shelf Ethernet hardware deployed for iSCSI can lose packets, resulting in slow performance or application downtime. Learn how to assess your current iSCSI infrastructure and engineer an advanced iSCSI SAN infrastructure.

Web Seminars

What's the best way to keep your network safe from malware? In this web seminar, security expert Greg Shields suggests an alternative method to the traditional blacklisting approach that is common with anti-virus and anti-malware solutions.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.