Welcome | Sign In
TechNewsWorld.com
Security

Hackers Launch Massive Attack on Internet DNS

Print Version
E-Mail Article
Reprints
Hackers Launch Massive Attack on Internet DNS

Hackers on Tuesday attacked at least three of the root servers that maintain the Internet's domain name system. However, the 12-hour-long attacks were largely unsuccessful, as most Internet users didn't notice any impact. The system's resilience is largely due to robust protection and a high degree of redundancy built into it.


Time to upgrade your existing phone system?
Which solution will best suit your business? This free 4-part guide will help you evaluate whether your current phone system is suitable for your needs and how it may impact future growth. Learn more.

Hackers on Tuesday launched a denial-of-service (DoS) attack against at least three of the 13 root servers that maintain the Internet's domain name system (DNS).

The attacks, which lasted for 12 hours, reportedly targeted the server that maintains the dot-org suffix, and the servers at the Department of Defense and the Internet Corporation for Assigned Names and Numbers.

The attacks were largely unsuccessful -- and reportedly less serious than a similar attack in 2002 -- as most Internet users hardly noticed any impact. The DNS' resilience is largely due to robust protection and a high degree of redundancy built into it, including algorithms designed to balance unusually high levels of traffic.

"This is a high-profile target, so there are a lot of measures in place to protect it," Zulfikar Ramzan, senior principal reseacher with Symantec (Nasdaq: SYMC) Security Response, told TechNewsWorld. "If the attack had been successful, it would have been a different story."

The shoring up groups did following the previous attacks "clearly worked," Matt Sergeant, senior antispam technologist at MessageLabs, told TechNewsWorld. "They have been readjusted and redistributed so an attack will be more widespread than just concentrated on a specific server."

Rumor Mill

Little concrete information has been released about the attacks. Presumably, the involved organizations are still analyzing the data.

"No one is talking about it," Dave Kennedy, senior risk analyst for Cybertrust, told TechNewsWorld. "No one is asking for help."

In this environment, speculation, rumors and misinformation have been rampant. For instance, it has been reported that the bulk of the attacks emanated from South Korea.

"We don't understand why South Korea is being blamed because from what we are seeing it is not them," Kennedy stated. "I have seen other reports that said [attacks from] China [are] playing a bigger role."

Reports also vary about the severity of the attacks. "There have been some exaggerations from what I can tell," he noted. "The servers were never down. They may have been unreachable in some places but that was more a result of the servers protecting themselves during the attack."

More than likely, the hackers used a bot network, or zombie computers, to carry out the attacks, Ramzan said. "Individual computer users should make sure they are not an accessory to such acts" by maintaining proper security.

Unfortunately, Sergeant commented, bot networks are easily available. "The hackers could have created their own or bought a network for a few hundred dollars."

Speculation About Intent

There is also no shortage of speculation on the intent of the attacks, and the fact that the attacks occurred on Safer Internet Day did not escape notice.

Kennedy pointed out that the attacks coincided with the North American Network Operators' Group annual meeting, held this year in Toronto. Another DoS attack in 2000 also occurred during the group's meeting, he said.

It's also possible the attacks were committed for a hacker or a group of hackers to show someone in their circle what they can do, Kennedy stated.

However, if that were the case, it's unlikely that there would be repeat demonstrations, at least on a regular basis, he said.

Hackers and malware writers need the Internet to do business themselves -- not only to communicate but also to run online scams, Kennedy contended.

"There is little point for them to bring it down. ... Generally, though, it is hard to get into the heads of hackers and try to figure out what motivates them," he said.

Sophisticated Rerouting

The most obvious motivation is financial gain -- the main driver behind most malware on the Internet today. Assuming everything had gone the hackers' way, in fact, they could have made more money than any malware writer had made before.

If the hackers had gained control of the servers, they could have begun rerouting traffic and performing sophisticated farming attacks, Randy Abrams, director of technical education at antivirus software firm Eset, told TechNewsWorld.

A user would type in an address and get rerouted to a different address without realizing it in this scenario. Online banking, as an example, would probably be a key target.


Print Version E-Mail Article Reprints More by Erika Morphy


More by Erika Morphy

Google Bends a Little Toward Nexus One Customers
February 09, 2010
Google appears to be taking some customer objections to the Nexus One seriously, although its overtures may not be enough to warm customers to its new business model. For one thing, it has reduced the fee it would charge for early termination to $150, but customers would have to pay T-Mobile an ETF as well. It has also set up a direct support line for orders -- but not for tech support.
Does 'Nimble' Pricing Suggest iPad Won't Move?
February 09, 2010
Indications that Apple may lower the price of its new iPad have surfaced -- even though its not yet available for sale -- suggesting that the company may not be certain it hit the sweet spot for consumers. One big inhibitor for a lot of prospective buyers is the extra monthly charge for WiFi and 3G connectivity.
Report: iPad Will Propel Tablets Into Mainstream Use
February 08, 2010
Will Apple's iPad do for tablets what its iPod did for MP3 players? Quite possibly. The tablet market will grow quickly on the heels of the iPad's release, according to In-Stat, which forecasts 50 million of the devices will ship in 2014. Others are less optimistic, though. Notably, consumer interest in buying an iPad did not increase as a result of the product's unveiling, according to a Retrevo survey.
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network