[nsp-sec] AT&T blackholing IPs

FORSTER, ROB rf1542 at att.com
Tue Oct 9 16:15:02 EDT 2012


AT&T (AS7108) is blackholing around 800 IP addresses as sources of attacks against our customers.
Most, if not all, of these are web servers.
The two attached Excel files are sorted by ASN.
Please let me know when the systems have been remediated.
We can then arrange to remove the IP from the blocks.
Please email me if you have any questions or the IP has been fixed.



Thanks.

Rob Forster
AT&T
rf1542 at att.com


-------------- next part --------------
A non-text attachment was scrubbed...
Name: attacklist-merged-v2.xlsx
Type: application/vnd.openxmlformats-officedocument.spreadsheetml.sheet
Size: 30674 bytes
Desc: attacklist-merged-v2.xlsx
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20121009/1cf43252/attachment-0002.xlsx>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ddos-attackers-listof511.xlsx
Type: application/vnd.openxmlformats-officedocument.spreadsheetml.sheet
Size: 38354 bytes
Desc: ddos-attackers-listof511.xlsx
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20121009/1cf43252/attachment-0003.xlsx>


More information about the nsp-security mailing list