Jump to content

17 posts in this topic

Recommended Posts

Filed: Country: Vietnam (no flag)
Timeline
Posted (edited)

By JOHN MARKOFF

Published: August 12, 2008

Weeks before physical bombs started falling on Georgia, a security researcher in suburban Massachusetts was watching an attack against the country in cyberspace.

Jose Nazario of Arbor Networks in Lexington noticed a stream of data directed at Georgian government sites containing the message: win+love+in+Rusia.

Other Internet experts in the United States said the attacks against Georgia’s Internet infrastructure began as early as July 20, with coordinated barrages of millions of requests — known as distributed denial of service, or D.D.O.S., attacks — that overloaded certain Georgian servers.

The Georgian government blamed Russia for the attacks, but the Russian government said it was not involved.

Researchers at Shadowserver, a volunteer group that tracks malicious network activity, reported that the Web site of the Georgian president, Mikheil Saakashvili, had been rendered inoperable for 24 hours by multiple D.D.O.S. attacks. The researchers said the command and control server that directed the attack, which was based in the United States, had come online several weeks before it began the assault.

As it turns out, the July attack may have been a dress rehearsal for an all-out cyberwar once the shooting started between Georgia and Russia.

According to Internet technical experts, it was the first time a cyberattack had coincided with a shooting war. But it will likely not be the last, said Bill Woodcock, the research director of the Packet Clearing House, a nonprofit that tracks Internet traffic. He said cyberattacks are so inexpensive and easy to mount, with few fingerprints, that they will almost certainly remain a feature of modern warfare.

“It costs about 4 cents per machine,” Mr. Woodsock said. “You could fund an entire cyberwarfare campaign for the cost of replacing a tank tread, so you would be foolish not to.”

Shadowserver saw the attack against Georgia spread to computers throughout the government after Russian troops invaded the Georgian province of South Ossetia on Sunday.

Georgina media, communications and transportation companies were also targeted, according to security researchers.

“Could this somehow be indirect Russian action? Yes, but considering Russia is past playing nice and uses real bombs, they could have attacked more strategic targets or eliminated the infrastructure kinetically,” said Gadi Evron, an Israeli network security expert who assisted in pushing back a cyber attack on Estonia’s Internet infrastructure last May. “The nature of what’s going on isn’t clear.”

A Russian government spokesman said that the government was not involved, but that it was possible that individuals in Russia or elsewhere had taken it upon themselves to start the attacks.

“I cannot exclude this possibility,” Yevgeniy Khorishko, a spokesman for the Russian Embassy in Washington. “There are people who don’t agree with something and they try to express thesmelves. You have people like this in your country.”

Mr. Nazario said the attacks appeared to be politically motivated. They were continuing on Monday against Georgian news sites, according to Mr. Nazario. “I’m watching attacks against apsny.ge and news.ge right now,” he said.

The attacks were controlled from a server based at a telecommunications firm in Moscow, he said. In contrast, the attacks last month came from a control computer that was based in the United States. That system was later disabled.

Denial of service attacks, aimed at making a Web site unreachable, began in 2001 and have been refined in terms of power and sophistication since then. They are usually performed by hundreds or thousands of commandeered personal computers, making it difficult or impossible to determine who is behind a particular attack.

The Web site of the president of Georgia was moved to an Internet operation in the United States run by a Georgian native over the weekend. The company, Tulip Systems Inc., based in Atlanta, is run by Nino Doijashvili, who was in Georgia at the time of the attack. Two Web sites, president.gov.ge and rustavi2.com, the Web site of a prominent Georgian TV station, were moved to Atlanta. Computer security executives said the new sites had also come under attack.

On Monday, Renesys executives said that most Georgian networks were unaffected, although individual Web sites might be under attack. Networks appeared and disappeared as power was cut off and restored as a result of the war, they said

A company researcher noted that Georgia was dependent on both Russia and Turkey for connections to the Internet. As a result of the interference the Georgian government began posting news dispatches to a Google-run blogging Web site, georgiamfa.blogspot.com. Separately, there were reports that Estonia was sending technical assistance to the Georgian government.

There were indications that both sides in the conflict — or sympathizers — were engaged in attacks aimed at blocking access to Web sites. On Friday, the Russian language Web site Lenta.ru reported that there had been D.D.O.S. attacks targeted at the official Web site of the government of South Ossetia as well as attacks against the RIA Novosti, a Russian news agency.

Internet researchers at Sophos, a computer security firm based in Britain, said that the National Bank of Georgia’s Web site was defaced at one point. Images of 20th century dictators as well as an image of Georgia’s president Mr. Saakashvili, were placed on the site.

Internet technical experts said that the Georgian Internet presence was relatively small compared with other former Soviet states. The country has about a quarter the number of Internet addresses as Estonia or Latvia, according to Mr. Woodcock, the research director of the Packet Clearing House.

With support from the United States, Georgia is in the process of completing a 1, 400-kilometer fiber optic network link under the Black Sea connecting its port city of Poti to Varna, Bulgaria. That connection is scheduled for completion in September. The link will give the country added redundancy and make it less reliant on Russian companies for its data communication needs.

http://www.nytimes.com/2008/08/13/technolo...amp;oref=slogin

Edited by WideAwakeInTheUSA
Filed: Citizen (apr) Country: Brazil
Timeline
Posted
not surprising really. botnets do have a purpose.

I don't find it surprising either, but this could be something that could draw us in. They essentially used American soil to launch, or further, a war.

unlikely.

* ~ * Charles * ~ *
 

I carry a gun because a cop is too heavy.

 

USE THE REPORT BUTTON INSTEAD OF MESSAGING A MODERATOR!

Filed: Country: Vietnam (no flag)
Timeline
Posted
Not surprising really.

Did anyone read about what happened in Estonia last year?

I saw another article that referred to that, but didn't read it.

*Someone* hacked and disabled Estonia's entire internet infrastructure.

Can you imagine if that happened here? I'd be ready to invade Canada for internet access!

Filed: Country: Russia
Timeline
Posted
Not surprising really.

Did anyone read about what happened in Estonia last year?

I saw another article that referred to that, but didn't read it.

*Someone* hacked and disabled Estonia's entire internet infrastructure.

Must have been one hell of an infrastructure.

Here is my story. I've lived problem free life, payed my taxes. One day I decided to marry this girl. But to do so would require her to come to US of A, and so it started. My problem free live turned in to free problems from USCIS! Sure things turned to unsure, certain dates turned to aproximation within months. All logical thinking was out the door, as I filed my papers withing famous Vermont Centre!

I-130 Received

12-12-07

I-130 Approved

8-28-2008

NVC

Date Package Received By NVC : 09-05-08

-- Received DS-3032 / I-864 Bill : 09-11-08

-- Pay I-864 Bill :09-11-08

-- Receive I-864 Package :09-15-08

-- Return I-864 Package :09-16-08

-- Return Completed DS-3032 :09-11-08

-- Receive IV Bill :09-17-2008

-- Pay IV Bill :09-17-2008

-- Receive Instruction Package :09-17-08

-- Case Completed at NVC :10-16-08

Date Package Left From NVC :10-31-08

Date Received By Consulate :11-05-08

Date Rec Instructions (Pkt 3) :11-05-08

Date Complete Instructions (Pkt 3) :11-05-08

Date Rec Appointment Letter (Pkt 4):11-25-08

Interview Date (IR-1/CR-1 Visa):12/08/08

Date IR-1/CR-1 Visa Received :12-11-08

Date of US Entry :12-17-08

Filed: Country: Vietnam (no flag)
Timeline
Posted
Not surprising really.

Did anyone read about what happened in Estonia last year?

I saw another article that referred to that, but didn't read it.

*Someone* hacked and disabled Estonia's entire internet infrastructure.

Must have been one hell of an infrastructure.

communication.jpg

Filed: Other Country: United Kingdom
Timeline
Posted
Not surprising really.

Did anyone read about what happened in Estonia last year?

I saw another article that referred to that, but didn't read it.

*Someone* hacked and disabled Estonia's entire internet infrastructure.

Must have been one hell of an infrastructure.

Actually it is...

Filed: Country: Russia
Timeline
Posted
Not surprising really.

Did anyone read about what happened in Estonia last year?

I saw another article that referred to that, but didn't read it.

*Someone* hacked and disabled Estonia's entire internet infrastructure.

Must have been one hell of an infrastructure.

Actually it is...

It is what?

Here is my story. I've lived problem free life, payed my taxes. One day I decided to marry this girl. But to do so would require her to come to US of A, and so it started. My problem free live turned in to free problems from USCIS! Sure things turned to unsure, certain dates turned to aproximation within months. All logical thinking was out the door, as I filed my papers withing famous Vermont Centre!

I-130 Received

12-12-07

I-130 Approved

8-28-2008

NVC

Date Package Received By NVC : 09-05-08

-- Received DS-3032 / I-864 Bill : 09-11-08

-- Pay I-864 Bill :09-11-08

-- Receive I-864 Package :09-15-08

-- Return I-864 Package :09-16-08

-- Return Completed DS-3032 :09-11-08

-- Receive IV Bill :09-17-2008

-- Pay IV Bill :09-17-2008

-- Receive Instruction Package :09-17-08

-- Case Completed at NVC :10-16-08

Date Package Left From NVC :10-31-08

Date Received By Consulate :11-05-08

Date Rec Instructions (Pkt 3) :11-05-08

Date Complete Instructions (Pkt 3) :11-05-08

Date Rec Appointment Letter (Pkt 4):11-25-08

Interview Date (IR-1/CR-1 Visa):12/08/08

Date IR-1/CR-1 Visa Received :12-11-08

Date of US Entry :12-17-08

Filed: Other Country: United Kingdom
Timeline
Posted
Not surprising really.

Did anyone read about what happened in Estonia last year?

I saw another article that referred to that, but didn't read it.

*Someone* hacked and disabled Estonia's entire internet infrastructure.

Must have been one hell of an infrastructure.

Actually it is...

It is... one hell of an internet infrastructure.

i.e. its not $hit. If that's what you were getting at. Its actually a world-leader in terms of internet technologies.

It is what?

 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
- Back to Top -

Important Disclaimer: Please read carefully the Visajourney.com Terms of Service. If you do not agree to the Terms of Service you should not access or view any page (including this page) on VisaJourney.com. Answers and comments provided on Visajourney.com Forums are general information, and are not intended to substitute for informed professional medical, psychiatric, psychological, tax, legal, investment, accounting, or other professional advice. Visajourney.com does not endorse, and expressly disclaims liability for any product, manufacturer, distributor, service or service provider mentioned or any opinion expressed in answers or comments. VisaJourney.com does not condone immigration fraud in any way, shape or manner. VisaJourney.com recommends that if any member or user knows directly of someone involved in fraudulent or illegal activity, that they report such activity directly to the Department of Homeland Security, Immigration and Customs Enforcement. You can contact ICE via email at Immigration.Reply@dhs.gov or you can telephone ICE at 1-866-347-2423. All reported threads/posts containing reference to immigration fraud or illegal activities will be removed from this board. If you feel that you have found inappropriate content, please let us know by contacting us here with a url link to that content. Thank you.
×
×
  • Create New...