Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Earth_First

(14,910 posts)
Fri Oct 21, 2016, 01:06 PM Oct 2016

Update: Third Attack; Internet traffic firm Dyn warns of new attack, earlier assault impacted many

Last edited Fri Oct 21, 2016, 04:59 PM - Edit history (1)

Source: CNBC

Internet traffic company Dyn on Friday warned of another cyber attack after earlier in the day websites and services across the East Coast were shut down.

"We have begun monitoring and mitigating a DDoS attack against our Dyn Managed (Domain Name System) infrastructure. Our Engineers are continuing to work on mitigating this issue," Dyn said on its website at 11:52 a.m.

A Distributed Denial of Service (DDoS) attack is when a web service is intentionally overwhelmed by traffic from many sources. It is a common method for digital assaults.

Dyn said the earlier attack started at 7:10 a.m. It affected Dyn's Managed DNS infrastructure, which is the system that directs users to the correct webpage. Dyn said the services had been restored to normal after the initial attack by 9:20 a.m.


Read more: http://www.cnbc.com/2016/10/21/major-websites-across-east-coast-knocked-out-in-apparent-ddos-attack.html

47 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Update: Third Attack; Internet traffic firm Dyn warns of new attack, earlier assault impacted many (Original Post) Earth_First Oct 2016 OP
SoCal checking in... PasadenaTrudy Oct 2016 #1
I'm in Washington angrychair Oct 2016 #3
Still can't get on PasadenaTrudy Oct 2016 #19
Me too angrychair Oct 2016 #23
I think it's time we consider cutting the fiber to Russia. roamer65 Oct 2016 #4
If the source is a hostile government, we should cut it. denbot Oct 2016 #9
Maybe that's Russia's next idea: screw up the elections by crashing them. C Moon Oct 2016 #7
Or the October surprise durablend Oct 2016 #11
Putin upping his game nt geek tragedy Oct 2016 #8
I guess the central US states aren't impacted OKNancy Oct 2016 #10
NM is impacted PasadenaTrudy Oct 2016 #27
There are a few websites I can't get to starting about 2:40 PM EST BlueStreak Oct 2016 #29
Looks like Disqus is down for the moment MynameisBlarney Oct 2016 #12
Anyone else notice Black Mirror new season was released today? suffragette Oct 2016 #13
Indeed Achilleaze Oct 2016 #15
Interesting timing, yes? suffragette Oct 2016 #16
We heard last week that the US was going to retaliate against the Russians BlueStreak Oct 2016 #30
Possibly. Interesting article here about uptick in probing and attacks and use of suffragette Oct 2016 #33
From Wired dot com. MynameisBlarney Oct 2016 #18
Many sites down now for me, including Twitter elmac Oct 2016 #22
I go to a site to see the status of many christx30 Oct 2016 #24
many sites are still down nt msongs Oct 2016 #25
CA DMVs are down now too PasadenaTrudy Oct 2016 #26
Every Site I Visit To Read About This... jayfish Oct 2016 #28
How much you want to bet that Coolest Ranger Oct 2016 #32
West Coast impacted now, Twitter down, dKos photos server down, everything slowed Coyotl Oct 2016 #34
Twitter came back, then it's gone again. Amonester Oct 2016 #35
Voting machines? lou ky dem Oct 2016 #36
This was anticipated about a month ago CabalPowered Oct 2016 #37
Comcast, YouTube, AT&T, Cox. PayPal, Netflix, Verizon, Facebook, Google, XboxLive, ancianita Oct 2016 #38
That's quite a "blue" red area, except for the East TX red part. nt. Mc Mike Oct 2016 #42
I'm not sure what you mean. To me it seems that area is full of the affected companies, no? ancianita Oct 2016 #45
I was mentally transposing the red v blue election map onto the posted map's red cloud affected area Mc Mike Oct 2016 #47
Update: BREAKING:  Dyn warns customers that a third cyber attack is currently underway Earth_First Oct 2016 #39
Looks like speculation about the 'Internet of Things' being enlisted in attack was correct suffragette Oct 2016 #40
(attack is) "from tens of millions IP addresses" moondust Oct 2016 #41
I'm in NH, not far from Dyn, and we've been out all day. Vinca Oct 2016 #43
This group @NewWorldHacking is claiming responsibility for the DDoS MowCowWhoHow III Oct 2016 #44
Putin trying out his plan to screw up Christmas dalton99 Oct 2016 #46
Dec 1969 #
Dec 1969 #

PasadenaTrudy

(3,998 posts)
1. SoCal checking in...
Fri Oct 21, 2016, 01:12 PM
Oct 2016

I haven't been able to access twitter since I woke up an hour ago. On my laptop, I get a cannot reach server message.

roamer65

(36,745 posts)
4. I think it's time we consider cutting the fiber to Russia.
Fri Oct 21, 2016, 01:25 PM
Oct 2016

If they can't play nicely in the "big sandbox" called the internet, they deserve to be disconnected.

denbot

(9,899 posts)
9. If the source is a hostile government, we should cut it.
Fri Oct 21, 2016, 01:31 PM
Oct 2016

When I read about the attack I wondered if we unpacked some nasties in Russian systems as a pay back for the Wiki hacks, and this was an escalation.

OKNancy

(41,832 posts)
10. I guess the central US states aren't impacted
Fri Oct 21, 2016, 01:41 PM
Oct 2016

Haven't had any trouble all day and I've been up since 4am.

PasadenaTrudy

(3,998 posts)
27. NM is impacted
Fri Oct 21, 2016, 02:55 PM
Oct 2016

I know it's a mountain state, but it's neither west coast or east coast. Just heard Chicago is too.

MynameisBlarney

(2,979 posts)
12. Looks like Disqus is down for the moment
Fri Oct 21, 2016, 01:45 PM
Oct 2016

Not one of the 3 sites I frequent that use Disqus have the comments up.
*edit: Raw Story, Crooks and Liars and Wonkette.
And trying to go to Disqus dot com gives the "website not found" error...or something similar.

Not sure if it has anything to do with this DDOS attack, but it damn well could.

 

BlueStreak

(8,377 posts)
30. We heard last week that the US was going to retaliate against the Russians
Fri Oct 21, 2016, 02:59 PM
Oct 2016

This is probably part of that fallout. Anybody hear of any problems affecting the Russians?

suffragette

(12,232 posts)
33. Possibly. Interesting article here about uptick in probing and attacks and use of
Fri Oct 21, 2016, 03:45 PM
Oct 2016

Insecure items to launch these.

http://gizmodo.com/todays-brutal-ddos-attack-is-the-beginning-of-a-bleak-f-1788071976


Recently, we’ve entered into a new DDoS paradigm. As security blogger Brian Krebs notes, the newfound ability to highjack insecure internet of things devices and turn them into a massive DDoS army has contributed to an uptick in the size and scale of recent DDoS attacks. (We’re not sure if an IoT botnet was what took down Dyn this morning, but it would be a pretty good guess.)

We are nevertheless getting a taste of what the new era of DDoS attacks look like, however. As security expert Bruce Schneier explained in a blog post:

Over the past year or two, someone has been probing the defenses of the companies that run critical pieces of the Internet. These probes take the form of precisely calibrated attacks designed to determine exactly how well these companies can defend themselves, and what would be required to take them down. We don’t know who is doing this, but it feels like a large nation state. China or Russia would be my first guesses.

This sort of attack is deeply different than the headline-grabbing DDoS attacks of years past. In 2011, hacker collective Anonymous rose to fame with DDoS attacks that pale in comparison to today’s attack on Dyn. Instead of taking out an individual website for short periods of time, hackers were able to take down a major piece of the internet backbone for an entire morning—not once but twice. That’s huge.



I was just joking about the Black Mirror timing, though it is fascinating given the nature of that series. Of course, with Netflix down, many can't watch it.
 

elmac

(4,642 posts)
22. Many sites down now for me, including Twitter
Fri Oct 21, 2016, 02:30 PM
Oct 2016

is this bigger then what is being reported. Are the Russian terrorists upping the game?

christx30

(6,241 posts)
24. I go to a site to see the status of many
Fri Oct 21, 2016, 02:38 PM
Oct 2016
http://downdetector.com/ shows me the status of pretty much any site I want. It relies on reports from users showing it's down.
To see the sites that are affected by this DDOS, look for sites that have 0 reports, with a whole bunch on the right side of their line. Twitter, PSN, EA, Level 3, Paypal, ect.

Great overall views.

PasadenaTrudy

(3,998 posts)
26. CA DMVs are down now too
Fri Oct 21, 2016, 02:54 PM
Oct 2016

At least according to Reddit. Someone went to a dmv and got sent home. Employees couldn't do anything on their computers.

jayfish

(10,039 posts)
28. Every Site I Visit To Read About This...
Fri Oct 21, 2016, 02:58 PM
Oct 2016

acts as if the outages are over. They are not! It looks like whoever's doing this is rolling thier attacks to different targets as time passes.

 

Coyotl

(15,262 posts)
34. West Coast impacted now, Twitter down, dKos photos server down, everything slowed
Fri Oct 21, 2016, 03:46 PM
Oct 2016

You'd think the USA has threatened a foreign power with a cyber attack!

Amonester

(11,541 posts)
35. Twitter came back, then it's gone again.
Fri Oct 21, 2016, 03:49 PM
Oct 2016
After cyberassault KOs Amazon, Twitter, Spotify, second attack reported

CabalPowered

(12,690 posts)
37. This was anticipated about a month ago
Fri Oct 21, 2016, 04:32 PM
Oct 2016

There were a number of warning signs:

https://www.schneier.com/blog/archives/2016/09/someone_is_lear.html

Our company is a Dyn customer and have used them for years. This is the first outage we've ever experienced. They are considered to be one of the most sophisticated DNS hosts in the world. That's why all the big sites use them.


ancianita

(36,058 posts)
45. I'm not sure what you mean. To me it seems that area is full of the affected companies, no?
Fri Oct 21, 2016, 07:43 PM
Oct 2016

Seems likely to me that the blue area you refer to is largely unpopulated desert.

Mc Mike

(9,114 posts)
47. I was mentally transposing the red v blue election map onto the posted map's red cloud affected area
Fri Oct 21, 2016, 08:25 PM
Oct 2016

Hence, my mention excepting the part of East TX that is under the cloud.

suffragette

(12,232 posts)
40. Looks like speculation about the 'Internet of Things' being enlisted in attack was correct
Fri Oct 21, 2016, 05:02 PM
Oct 2016

http://www.cnbc.com/2016/10/21/major-websites-across-east-coast-knocked-out-in-apparent-ddos-attack.html

Dyn told CNBC that one of the sources of the attack is coming from devices known as the "Internet of Things" devices such as DVRs, Printers, and appliances connected to the internet.

The company said in a conference call Friday afternoon that the attack is being waged from devices infected with a malware code that was released on the web in recent weeks.

Dyn said it has not heard from attackers and does not know who they are.
"What they're actually doing is moving around the world with each attack," Dyn Chief Strategy Officer Kyle York said in a conference call Friday afternoon.

moondust

(19,985 posts)
41. (attack is) "from tens of millions IP addresses"
Fri Oct 21, 2016, 05:14 PM
Oct 2016
Dyn told CNBC the attack is “well planned and executed, coming from tens of millions IP addresses at same time.”

http://gizmodo.com/this-is-probably-why-half-the-internet-shut-down-today-1788062835

Vinca

(50,273 posts)
43. I'm in NH, not far from Dyn, and we've been out all day.
Fri Oct 21, 2016, 06:07 PM
Oct 2016

It just flickered back on about 5 minutes ago. It's been a major pain in the butt for my husband's business. We're just waiting for the next round.

MowCowWhoHow III

(2,103 posts)
44. This group @NewWorldHacking is claiming responsibility for the DDoS
Fri Oct 21, 2016, 07:42 PM
Oct 2016
https://twitter.com/NewWorldHacking

US internet repeatedly disrupted by cyberattacks on key firm

LONDON (AP) —

...

HACKERS CLAIM RESPONSIBILITY

Members of a shadowy hacker collective that calls itself New World Hackers claimed responsibility for the attack via Twitter. They said they organized networks of connected "zombie" computers that threw a staggering 1.2 terabits per second of data at the Dyn-managed servers.

"We didn't do this to attract federal agents, only test power," two collective members who identified themselves as "Prophet" and "Zain" told an AP reporter via Twitter direct message exchange. They said more than 10 member participated in the attack. It was not immediately possible to verify the claim.

Dyn officials said they did not know who was behind the attacks or if they were orchestrated by a state-backed group or online activists or pranksters. They said they have received no claim of responsibility, but are working with law enforcement.

The collective, @NewWorldHacking on Twitter, has in the past claimed responsibility for similar attacks against sites including ESPNFantasySports.com in September and the BBC on Dec. 31. The attack on the BBC marshalled half the computing power of Friday's onslaught.

https://apnews.com/420f59d82ee942d6bd23101b7902411b
Latest Discussions»Latest Breaking News»Update: Third Attack; Int...