Related Links

Related Stories

  • What’s in store for 2010?
    The Noughties are behind us now, but memories of a decade of data breaches will continue to haunt the infosec professional. If only there was a way of knowing what the threat landscape would look like in the months to come. Well you’re in luck as Davey Winder has dusted off the crystal ball and spoken to a broad church of infosec professionals to get some informed predictions for 2010
  • Nature of botnet attacks changing says report
    A report just published concludes that the nature of botnet attacks is changing, with large-scale attacks being replaced by service and application-layer swarms.
  • Kaspersky reveals price list for botnet attacks
    A sophisticated underground economy has grown up to exploit the millions of personal computers that have been infected with rogue software that turns them into 'zombies' controlled by botnet masters, says an IT security expert.
  • Search for security
    With more than 30 000 web pages being infected every day, search engine results could increasingly lead to malware infection. Kari Larsen asks what the search engines are doing to mitigate security threats, and how users can protect themselves.
  • Prolexic chase botnet cybercriminals
    Network service security vendor, Prolexic, has released a report highlighting the difficulties in tracing the activities of cybercriminals using botnets.

News

DDoS attacks on Belarusian media – is cyber warfare escalating?

15 June 2009

There has been a surge in distributed denial of service (DDoS) attacks against media sites in Belarus, something that could signal an escalation in cyber warfare in the region.

A blog-post by senior security researcher Jose Nazario at security specialist Arbor Networks, hints that recent DDoS attacks, in particular against Belarus news site Charter97.org, could be related to the regional tension between Belarus and Russia.

Charter97 has seen several DDoS attacks over recent months, and as early as April 2008, the site was attacked with a botnet hosted at httpdoc.info using a Machbot-like botnet, that “we’ve never seen before”, wrote Nazario. “This was very much like the botnet behind the July 2008, Georgian president attacks.”

Charter97 wrote on its website, that “more than 5000 zombie computers are supposed to be involved in the attack”, and in updates on the most recent DDoS attack, Charter97 accuses the Belarusian government of trying to curb freedom of speech.

A comment to the Arbor Networks blog-post, points at that at the time of the most recent attacks, “Charter 97 published several articles about the ban on sales of dairy products from Belarus to Russia, and one about President Lukashenko mentioned in a satirical Russian TV programme.”

DDoS – a serious threat

Professor Howard A. Schmidt, president of the Information Security Forum (ISF), told Infosecurity that DDoS is a serious threat – especially for organisations that do not have the resources, technology or bandwidth to handle an attack.

Organisations have to make sure their security systems are up to the task, but Schmidt added that: “Governments also have a responsibility to protect businesses and the critical infrastructure and ensure its law enforcement bodies do what they can to prevent DDoS and identify the source of attacks.”

He mentioned the Cyber Clean Center, which has been set up by the Japanese Ministry of Internal Affairs and the Communication/Ministry of Economy, Trade and Industry, as an example of what governments can do. The Japanese Cyber Clean Center promotes Bot cleaning and prevention based on cooperation with internet service providers (ISPs).

“However, we have also seen some instances where governments have appeared to sponsor ‘cyber-warfare’ or ‘cyber-espionage’ either directly or through the emerging hacktivist community. These groups are intent on doing damage to organisations that in some cases their governments could prevent but choose to ignore, which results in hacktivist criminals acting with impunity", Schmidt warned.

 

This article is featured in:
Internet and Network Security Malware and Hardware Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.