[nsp-sec] GoDaddy DDOS details ?

White, Gerard Gerard.White at bellaliant.ca
Mon Sep 10 15:48:28 EDT 2012


If you TCP/53 to any of their DNS resources, you do get 3-way... so it doesn`t look like a typical DDoS attack to me...

GW

-----Original Message-----
From: nsp-security-bounces at puck.nether.net [mailto:nsp-security-bounces at puck.nether.net] On Behalf Of Mike Tancsa
Sent: September-10-12 5:02 PM
To: NSP-SEC
Subject: [nsp-sec] GoDaddy DDOS details ?

----------- nsp-security Confidential --------

Does anyone have details on the attack ? Target(s) ? Looking at my
flows, I dont see anything obvious jumping out (e.g larger than 500byte
packets with suspicious ephemeral ports etc)

	---Mike
-- 
-------------------
Mike Tancsa, tel +1 519 651 3400
Sentex Communications, mike at sentex.net
Providing Internet services since 1994 www.sentex.net
Cambridge, Ontario Canada   http://www.tancsa.com/


_______________________________________________
nsp-security mailing list
nsp-security at puck.nether.net
https://puck.nether.net/mailman/listinfo/nsp-security

Please do not Forward, CC, or BCC this E-mail outside of the nsp-security
community. Confidentiality is essential for effective Internet security counter-measures.
_______________________________________________
-------------- next part --------------
A non-text attachment was scrubbed...
Name: PGP.sig
Type: application/pgp-signature
Size: 183 bytes
Desc: not available
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20120910/6b6fe384/attachment-0001.sig>


More information about the nsp-security mailing list