Page 1 of 1 [ 9 posts ] 

Madbones
Veteran
Veteran

User avatar

Joined: 7 Mar 2010
Age: 29
Gender: Male
Posts: 777
Location: In the zone

27 Feb 2012, 8:12 pm

Hey!

I think I may have asked a similar question before, but this is slightly different.
Any one know what to do in the events of a DDOS attack in business?
Me and my brother are planning to set up a software/gaming business together. I am currently developing a game which is getting better and better.
What do from a business POV if some one where to DDOS my company's website and or servers? Ignore the attacker, or wait 24 hours and then contact _blank_ <- Is the point where I get stuck. What do would I need to do?
Thanks!


_________________
?Sometimes when you innovate, you make mistakes. It is best to admit them quickly, and get on with improving your other innovations.? -Steve Jobs.


Daneeka
Yellow-bellied Woodpecker
Yellow-bellied Woodpecker

User avatar

Joined: 24 Jan 2012
Age: 37
Gender: Male
Posts: 60

27 Feb 2012, 8:38 pm

Collect IP's, find who their providers are, contact their provider.

Make sure your site is properly hardnened against those kinds of attacks too.



Dilbert
Veteran
Veteran

User avatar

Joined: 29 Mar 2009
Age: 52
Gender: Male
Posts: 1,728
Location: 47°36'N 122°20'W

27 Feb 2012, 8:45 pm

Contact your Internet provider and have them filter the DDOS attack upstream where there's more bandwidth.

DDOS may flood your 10mbps connection and make your web service inaccessible. It may even flood the 100mbps connection your ISP has running to your neighborhood. But it won't flood the 10gbps connection on your ISPs backbone. So they block the traffic there so the DDOS never arrives at the lower bandwidth network segment.. At that point you just wait for the hacker to lose interest and stop the DDOS.

DDOS should be the least of your worries if you want to start up a business. I'd worry about having a viable business plan and good customer service. And get a good accountant to do your taxes. If you are developing a game you ought to just have it published on Steam. The goal is to make money. Not to have fun setting up unnecessary online presence. You should be detached if you want to run a business, or it won't be afloat for very long.



Dilbert
Veteran
Veteran

User avatar

Joined: 29 Mar 2009
Age: 52
Gender: Male
Posts: 1,728
Location: 47°36'N 122°20'W

27 Feb 2012, 8:47 pm

Daneeka wrote:
Collect IP's, find who their providers are, contact their provider.

Make sure your site is properly hardnened against those kinds of attacks too.


There would be thousands of source IPs across hundreds of providers, and a lot of them will be in other countries. Trying to contact them all would be futile.

A Web site can't be hardened against a DDOS. Against intrusion hack attacks, sure. But not DDOS. DDOS simply uses up all available bandwidth. The site itself is fine... but no one can get to it.



xowe
Blue Jay
Blue Jay

User avatar

Joined: 4 Aug 2011
Age: 48
Gender: Male
Posts: 81

27 Feb 2012, 9:15 pm

I have an ISP/IT Services business, and in the 10 years we have been doing internet connections, we had 1 DDOS attack. It was against a client's IP, and we blocked it at our Gigabit internet connection, and it was no longer an issue. I couldn't be bothered to try and alert ISPs, its futile.

Dilberts Right... Focus on security (server, anti-virus, etc) and your business (Business plan, getting clients, developing your products). DDOS is pretty unlikely and will cause you less grief if it happens then failing to do those other things.


_________________
People seem to think "Ignorance is Bliss", I don't agree.


Daneeka
Yellow-bellied Woodpecker
Yellow-bellied Woodpecker

User avatar

Joined: 24 Jan 2012
Age: 37
Gender: Male
Posts: 60

27 Feb 2012, 9:15 pm

Dilbert wrote:
There would be thousands of source IPs across hundreds of providers, and a lot of them will be in other countries. Trying to contact them all would be futile.

A Web site can't be hardened against a DDOS. Against intrusion hack attacks, sure. But not DDOS. DDOS simply uses up all available bandwidth. The site itself is fine... but no one can get to it.


Idealy you use a host who doesn't limit bandwidth. Still quite a feat to saturate a host's line.


http://joshua-mcclure.com/linux-ddos-de ... -htaccess/

https://wiki.archlinux.org/index.php/Sy ... _hardening

http://www.wjunction.com/13-tutorials-g ... s-ssh.html

https://en.wikipedia.org/wiki/Denial-of ... d_response



Madbones
Veteran
Veteran

User avatar

Joined: 7 Mar 2010
Age: 29
Gender: Male
Posts: 777
Location: In the zone

28 Feb 2012, 4:46 am

Thanks for the advice!
I think I have a good business plan, so hopefully that shouldnt be a problem. Is there 1 thing I should really know about security wise?
Thanks!


_________________
?Sometimes when you innovate, you make mistakes. It is best to admit them quickly, and get on with improving your other innovations.? -Steve Jobs.


Oodain
Veteran
Veteran

User avatar

Joined: 30 Jan 2011
Age: 36
Gender: Male
Posts: 5,022
Location: in my own little tamarillo jungle,

28 Feb 2012, 4:53 am

SQL injection if you have a public SQL databse (one that points outside your internal network)


_________________
//through chaos comes complexity//

the scent of the tamarillo is pungent and powerfull,
woe be to the nose who nears it.


Shorttail
Blue Jay
Blue Jay

User avatar

Joined: 3 Feb 2012
Age: 40
Gender: Male
Posts: 95
Location: Aarhus, Denmark

29 Feb 2012, 3:46 pm

Daneeka wrote:
Collect IP's, find who their providers are, contact their provider.

They are all spoofed. There is no provider.