What Happened to Blue Security 293
shadowknot writes "Blue Security has published a detailed account of the attack on their servers perpetrated by spammer "PharmaMaster". The attack included a DDoS attack on the Blue Security operational system and a Black Hole filtering attack on the Blue Security website. From the article: "The first attack was to block worldwide access to Blue Security's corporate website (www.bluesecurity.com) by tampering with the Internet backbone using a technique called "Blackhole Filtering". The Second attack was a DDoS attack on Blue Security's operational system."
Re:Yup, this sucks. (Score:4, Insightful)
Re:Yup, this sucks. (Score:5, Insightful)
Re:DNS Vulnerabilities (Score:5, Insightful)
Considering who Bluesecurity are and what they do, this whole thing has actually seemed to me to serve as pretty good PR for them. It pisses off lots of people, but once the facts were out there pretty much everyone I know got pissed at the spammer, not Bluesecurity. Everyone hates spam, but now they see a spammer taking things to the next level of evil, which really strengthens the image of the "good guys." People who never heard of Bluesecurity before are becomeing ready to do what they can to work against this spammer.
Tucow bad behavior? (Score:5, Insightful)
Re:Tier 1 ISP (Score:2, Insightful)
Poor response (Score:5, Insightful)
[May 3rd 23:23 GMT]
PharmaMaster Boasts Success
Tucows is a company I will never recommend or use to host any of my domains.
Caving in to a spammer/hacker retaliation will not garner much support.
http://www.joker.com/ [joker.com] serves my needs well
Pharma Master (Score:5, Insightful)
Enquiring minds (and all that) want to know.
Slashdot army unite! (Score:5, Insightful)
Do not listen to FUD-spreading ignoramuses who will no doubt leave many
Who do you trust to solve your spam problem? Microsoft? Your government? If they really cared, wouldn't the problem have have been solved long before spam encompassed 90% of all email? Blue Security offers a realistic, fair, assertive, and EFFECTIVE means of hitting spammers where it hurts - in the database and in the pocketbook. They need your help to make spam an unprofitable, inconvenient vehicle for advertisers.
I urge each and every
Spammers are childishly thrashing around the internet like a bull in a china shop, having a flailing temper tantrum because people dare to stand up for their privacy. It is the duty of
We have the numbers and the motivation. Aren't you sick and tired of these rich criminals wasting our time, defrauding our elders, and endangering our children day after day? If we stand together, just as the spammers stand together to attack Blue Security, then we WILL win.
Sign up for a Blue Frog account ASAP and encourage your friends and family to do the same, as I have. And if you think it's possible to reason with spammers, check out this CastleCops forum thread [castlecops.com] that shows inside conversations from a spammer message board.
Re:Tucow bad behavior? (Score:2, Insightful)
I understand that in an ideal world a company should stand by a client suffering a DDoS attack, and there are many companies out there that do (but they advertise the service specially, and you pay thousands for it). But I don't think we can really say that a company providing budget services to the masses has to sustain hundreds of thousands of dollars in losses to sustain one $20 client.
It's not ideal, but that's how the web works - and why DDoS attacks are so nasty, it's easy to end up in a situation where you've done nothing wrong, but nobody will host you.
Look at it this way - if you had a small company, or even a big company, and your entire network was down due to a client who gives you $20 a year - what would you do? Keep the client out of honour, but go out of business anyway?
Of course, if Blue Security pay Tucows for a $5,000/month DoS prevention plan that I'm not aware Tucows offer anway, ignore this post
The only solution to spam... (Score:3, Insightful)
We put down rabid dogs because they have the potential to harm human beings despite having no intention to do so. Why is it less humane to remove life that actively and maliciously harms others?
Traffic Is NOT What Spamvertised Sitres Want (Score:4, Insightful)
When a site receive traffic from those who do not buy, it is the same as a store which has 200 people just looking around (and not buying). These browsers cause wear and tear on the carpet, require the watchful eye of security, require resources to answer questions, and make it more crowded so that it is more difficult for paying customers to find what they are looking for and complete the transaction.
Right now, the ratio of revenue-generating traffic (those who come to a website to buy) verses the non revenue-generating traffic is high enough to justify having the website running and paying the spammers. When there is 8 gigs of traffic (non revenue generating) from spam haters for every byte of revenue producing traffic, then advertising a website via spam will be very UNPROFITABLE. When those who advertise by spam see loss instead of profits, they will quit paying spammers (or stop spamming themselves). This is why spammers hate the likes of Blue Security, SpammerSlapper, SpamFryer, and other retalitory tools.
What the spammers do not realize is that people who are ready to resort to using such antispammer tactics DO NOT like spamvertised websites nor will they buy crap from these websites. Blue Security is actually doing spammers a favor by pointing out the email receipients who do not want the spam and are willing to cause problems. If I were a spammer, I would want to listwash my sucker list and get rid of the email addresses of troublemakers and concentrate on the idiots who buy stuff advertised via spam. That way I would have to send out a lot less spam to get the sales I want. Spammers should go only after the suckers and leave the rest of us alone. When these nooby suckers decide that they are tired of being robbed and spammed into oblivion, they can then add their name and voice to the rest of the angry masses who have HAD ENOUGH.
Re:Tucow bad behavior? (Score:3, Insightful)
> domain registration and DNS services, they are probably earning what - $20 a year from Blue Security?
And how much can any of their remaining customers trust Tucows will protect US from the next idiot? So now all this asshat has to do is drop Tucows a note listing who he is pissed at this week and they will drop our domains too? No, millions for defense but never paying tribute is the only winning move. Tucows looked evil in the eye and they blinked. When my domain comes up again it will be going somewhere with just a little more courage. Network Solutions is a bunch of revolving assholes and they charge out the wazoo, but does anyone here think they would have caved? Not to mention they would have almost certainly been able to withstand an assault by one pissed off spammer.
SUE the advertisers (Score:2, Insightful)
How about the US DoD? (Score:2, Insightful)
Not too mention, the actions of pharmamaster are borderline terrorism. (just in case the NSA is watching ;) Not even freedom fighter terrorism, just good old fashioned fearmongering terrorism.
What nonsense (Score:4, Insightful)
There is no way that a single "backbone" provider could have installed a null route to block all traffic to their network. Bluesecurity is served by a Haifa-based provider called Netvision (Autonomous System number 1680). Netvision buys internet transit from four providers:
--UUnet/701 (uunet north america)
--UUnet/702 (uunet europe/middle east)
--btn/3491 (beyond the network)
--telia/1299 (telia sonera international backbone).
what the heck is BS claiming? that *all* of them installed a null route at once. do they even know what a null route is.
i'm getting annoyed enough at this nonsense to think about blogging about it in more detail over at www.renesys.com/blogs . perhaps later today.
foolishness.
Re:Client List NOT Compromised!!! (Score:3, Insightful)
Re:This isn't just between PharmaMaster & Blue (Score:3, Insightful)
way to screw up the batch file...
the ":start" bit should be on a line by itself.
DIY Experiment (Score:2, Insightful)
Lets call their bluff. Do this experiment yourself. And use Blue Frog.
Tucows are cowards! (Score:4, Insightful)
While the spammer is clearly worthy or our scorn, I believe Tucows is even more deserving of public shame and disgrace. I expect a spammer to spam, I expect a hacker to hack, but I do not expect a (formerly) respectable business that takes my money to sell me out to criminals! Yes, I know they claim it was to protect their other customers, but tossing your baby to the lion to keep it from from attacking everyone else is reprehensible and I thought civilization had progressed beyond this.
I for one, will NEVER use any of their services or web properties again unless they issue a public apology for their actions. Not just to BlueSecurity, but to all of their customers, because this clearly sends a signal to all would-be DDoS attackers that Tucows customers are for sale for the price of a few million IP packets!