[nsp-sec] Another DDoS to DynDNS Nameservers

Tom Daly tom at dyn-inc.com
Thu May 28 07:55:11 EDT 2009


Hi Teams,
At 1000 UTC, we came under yet another heavy packet frag attack. We're analyzing PCAPs now for sources.

If you'd be so kind to check for spikes in flow data to ns[1-5].mydyndns.org, we'd really appreciate it. Payload type is UDP, rest is garbage.

Oddly enough, the inbound path was limited solely to our Cogent and NTT links, and did not traverse other inbound paths to us (eg. Tata).

Regards,
Tom

-- 
Tom Daly
Dynamic Network Services, Inc.
P: +1-603-296-1537
http://dynamicnetworkservices.com/



More information about the nsp-security mailing list