Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 49 guests online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Malwarearrow Call to arms - Negritas' war against DDoS.
EH-Net
May 23, 2013, 03:35:54 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Call to arms - Negritas' war against DDoS.  (Read 11020 times)
0 Members and 1 Guest are viewing this topic.
Negrita
Sr. Member
****
Offline Offline

Posts: 299



View Profile
« on: March 24, 2007, 05:04:49 PM »

OK, so I'm declaring war on DDoS attacks. As some of you may know, I've already suffered a DDoS attack, and I can assure you it wasn't any fun.

I have an idea which for the mean time I'm keeping to myself that will hopefully help erradicate DDoS attacks, and make them a thing of the past. The reason I'm keeping it to myself is because there may be a patent in it for me, and it will give my work a decided edge over our competitors.

I have already amassed a huge amout of information, but I thought that I'd open this up to the EH-Net community to see what you could all come up with.
I'm looking for;
1. Any information that you have on DDoS attacks, including how they are planned, set up, executed, etc.
2. Copies of (prefferably source code) the client, master and daemon software of the following tools: Stacheldraht, Trin00, WinTrin00, TFN (Tribal Flood Network), TFN2K, Trinity, Shaft, Mstream, and any other DDoS attack tools you may know of, including any morphed versions.
3. Any information you may have on how DDoS attacks have been dealt with until now.

As I said, I've already got a lot of stuff, but I want to see what you can come up with. Furthermore, for those of you with malicious intent planning on sending me trojaned material, this research project will be undertaken in a totally stand alone secure network, so you can all save your efforts for another sucker.

Please send anything you have to; negrita1 <at> gmail <dot> com.
Logged

CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003

There are 10 kinds of people, those that understand binary, and those that don't.
Negrita
Sr. Member
****
Offline Offline

Posts: 299



View Profile
« Reply #1 on: April 11, 2007, 05:15:56 PM »

BUMP!

OK, so you all either like DDoS attacks and the thought that at anytime someone can do this to you, or you're all just too complacent to want to help out and take part in pioneering research.
Logged

CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003

There are 10 kinds of people, those that understand binary, and those that don't.
don
Editor-In-Chief
Administrator
Hero Member
*****
Offline Offline

Posts: 4167


Editor-In-Chief


View Profile WWW
« Reply #2 on: April 11, 2007, 08:25:01 PM »

Someone is supporting you:

http://www.digg.com/security/Call_to_Arms_Negritas_War_Against_DDoS

Don
Logged

CISSP, MCSE, CSTA, Security+ SME
slimjim100
EH-Net Columnist
Sr. Member
*****
Offline Offline

Posts: 385



View Profile WWW
« Reply #3 on: April 12, 2007, 07:46:16 AM »

Negrita I support your efforts but as for help...

1. Any information that you have on DDoS attacks, including how they are planned, set up, executed, etc.

I am not able to help with this due to NDA's with my employer Sad

2. Copies of (prefferably source code) the client, master and daemon software of the following tools: Stacheldraht, Trin00, WinTrin00, TFN (Tribal Flood Network), TFN2K, Trinity, Shaft, Mstream, and any other DDoS attack tools you may know of, including any morphed versions.

I do not have any copies or source code...


3. Any information you may have on how DDoS attacks have been dealt with until now.

Again the NDA prevents me from discussing this info.

If you would like to talk about prevention or how to limit damage during an attach I can chat with you via IM.


Brian
Logged

CISSP, CCSE, CCNA, CCAI, Network+, Security+, JNCIA, & MCP
S20
Newbie
*
Offline Offline

Posts: 1

Are you ethical?


View Profile
« Reply #4 on: August 18, 2007, 06:28:38 AM »

Negrita i hope this helps

http://www.ussrback.com/docs/distributed/mstream.txt

http://staff.washington.edu/dittrich/misc/mstream.analysis.txt
Logged

-------------------------------------------
The only secure system is:
A system with no network connection,
no users, cast in 30 feet of reinforced
concrete and a dead admin.
-------------------------------------------
oneeyedcarmen
Full Member
***
Offline Offline

Posts: 233


Klaatu, Borada,Necktie?


View Profile
« Reply #5 on: August 18, 2007, 07:19:02 AM »

Negrita,

Any updates on your research?  Can we expect to see your name on a patent anytime soon?

-Brian
Logged

Reluctant CISSP, Certified ASS
Negrita
Sr. Member
****
Offline Offline

Posts: 299



View Profile
« Reply #6 on: August 18, 2007, 01:26:00 PM »

Well the idea has been presented to the VP of Product Management and to the CTO. The idea will require third party involvement, and I know that they are in contact with some security partners such as Aladdin and Symantec.

It's now out of my hands. Management now have to decide if this is a feasable product to develop and if this is the direction they want to take the company.
Logged

CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003

There are 10 kinds of people, those that understand binary, and those that don't.
Negrita
Sr. Member
****
Offline Offline

Posts: 299



View Profile
« Reply #7 on: August 18, 2007, 03:14:47 PM »

Hi S20,

Sorry, I missed your post earlier. Thanks for those links. When I said earlier that I had amassed  some material, The first stuff I got my hands on was David Dittrichs' materials. The ussrback.com site looks very usefull though - thanks.
Logged

CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003

There are 10 kinds of people, those that understand binary, and those that don't.
Manu Zacharia (-M-)
Sr. Member
****
Offline Offline

Posts: 393


c0c0n Hacking Conference - where hackers unite


View Profile WWW
« Reply #8 on: August 18, 2007, 05:08:39 PM »

Hi Negrita,

I missed your first post on this first thread. However, let me first extend full support to your wonderful initiative.

As part of content development for my book on IDS, I did some research on DDoS, out of which, I found the following outstanding:

A Taxonomy of DDoS Attack and DDoS Defense Mechanisms

Another Good Resource for DoS and DDos (including Code and Documentation)

As a support to your initiative, I will be mentioning/discussing this project in my web portals, blogs and training seminars.

Wishing you all the best for your research. Keep us posted about your success, the new developments and mile stones achieved.
Logged

Manu Zacharia
MVP (Enterprise Security), ISLA-2010 (ISC)˛, C|EH, C|HFI, CCNA, MCP,
Certified ISO 27001:2005 Lead Auditor

There are 3 roads to spoil; women, gambling & hacking. The most pleasant with women, the quickest with gambling, but the surest is hacking - c0c0n
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.082 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.