Lessons from Surviving a 300Gbps Denial of Service Attack

Lessons from Surviving a 300Gbps Denial of Service Attack

Black Hat via YouTube Direct link

Ingredients for the Spamhaus attack?

6 of 15

6 of 15

Ingredients for the Spamhaus attack?

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Lessons from Surviving a 300Gbps Denial of Service Attack

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Lessons from Surviving a 300Gbps DDOS Attack
  2. 2 The Story 1. The nature of the attack 2. What we did to stop it 3. Practical steps to protect your own networks
  3. 3 March 18-21
  4. 4 What you don't need... 1. Botnets 2. A lot of people 3. Significant technical skill
  5. 5 Misconfigured DNS servers running without limits on what they respond to
  6. 6 Ingredients for the Spamhaus attack?
  7. 7 Attacker could do the math
  8. 8 Caused temporary regional disruptions
  9. 9 Worked with IXs and providers
  10. 10 "Next Hop Self" internal routing
  11. 11 Edge filtering of IPs/protocols with an understanding of our application
  12. 12 Four suggestions
  13. 13 Second, practice good protocol hygene...
  14. 14 Third, implement infrastructure ACLS...
  15. 15 Fourth, know your upstreams...

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.