[nsp-sec] 1Million Botnet Ips

Stephen Gill gillsr at cymru.com
Mon Jul 7 11:54:04 EDT 2008


> The IPs listed for us were all from June.  Most were wireless folks on
> DHCP, many of whom aren't around any more.  Could cert.at have fed us
> the botnet reports sooner to help us get to the infected hosts in a
> more timely manner?  (Just wondering if this is a one-time report or
> something they plan to do more regularly.)

Good question. I'm pretty sure the data would/could have arrived more
quickly though there was some research being done.  I don't know if there
will be follow-ups to the report yet but it might be good to reach out to
them and say a quick hello, thanks, nice to meet you, etc.

-- steve

-- 
Stephen Gill, Chief Scientist, Team Cymru
http://www.cymru.com | +1 312 924 4023 | gillsr at cymru.com





More information about the nsp-security mailing list