New attack?
#1
Posted 16 November 2011 - 11:16 AM
Most of them are looking at Ubuntu MRT Rescue
What makes this topic so interesting?
The last post is done "Posted 14 March 2011 - 01:56 PM"
Peter
EDIT: And now they all have great interest for SARDU:
#2
Posted 16 November 2011 - 01:12 PM
The visitor statistics are normal, meaning these "visitors" may be bots as they typically don't execute Javascript.
Let them troll, our server can take the load.
#3
Posted 16 November 2011 - 03:51 PM
#4
Posted 16 November 2011 - 04:36 PM
#5
Posted 16 November 2011 - 04:38 PM
It can be as simple as a wget instruction looping from a script to a specific URL as a distributed computing environment with thousands of different zombies targeting hundreds of pages and mimicking normal users.
On this case, I would imagine something more on the range of the wget category of attacks. Getting the page content but not executing the javascript portion since it is not viewed under a browser. I have no idea of what they are using. Almost two years ago we really had a series of attacks that made the site unusable for half a month.
Will see what can be done to counter-act this prank.
#6
Posted 16 November 2011 - 05:13 PM
130 members, 25363 guests
25 000 guests is too much to be real.
If the forum has Ads and it's payed to the numbers of views, I wonder what G***** says about this.
Of course the 10 pages rule doesn't apply for guests because there are viewing one page and the attack is well timed and thought.
Should the forum be made members only?
#7
Posted 16 November 2011 - 05:19 PM
It says nothing, the ads are only triggered by javascript which does not seem to be executed on this case. In either way, they are well used to handle these things from other sites across the web.If the forum has Ads and it's payed to the numbers of views, I wonder what G***** says about this.
No need, we proceed with business as usual.Should the forum be made members only?
#8
Posted 17 November 2011 - 04:33 AM
#9
Posted 17 November 2011 - 04:00 PM
#10
Posted 17 November 2011 - 04:06 PM
#11
Posted 17 November 2011 - 04:32 PM
In the past they caused havoc, right now their effects are barely noticeable enough to disrupt our services.
#12
Posted 18 November 2011 - 11:14 PM
Don't worry. We know well how to handle these matters and we are well prepared to face them.
#13
Posted 20 November 2011 - 07:14 PM
#14
Posted 20 November 2011 - 10:53 PM
Yes what we are now experiencing must be a trick of the mind, let us fake that the forum is normally functional, that one page evey two doesn't time out and needs to be refreshed/reloaded and expecially let us fake that it is normal that to edit a post 10 minutes or more of repeated attempts are needed.Don't worry. We know well how to handle these matters and we are well prepared to face them.
In the past they caused havoc, right now their effects are barely noticeable enough to disrupt our services.
The ostrich has survived for a lot of time using a similar technique:
http://en.wikipedia.org/wiki/Ostrich
Of course at the time Pliny the Elder wrote his report, they did actually bury their head in the sand, the fact that nowadays they don't anymore, is that in the meantime they learned how futile it is.
Wonko
#15
Posted 21 November 2011 - 09:02 AM
Ninja pendisk also has amazing stats, over 20 000 downloads to a mere 14 000 page views.
It is such a good program that people don't even visit the download page and download it right away..
I disabled anonymous login to prevent this leeching from continuing.
#16
Posted 21 November 2011 - 09:19 AM
And the board is responding again!I disabled anonymous login to prevent this leeching from continuing.
Wonko
#17
Posted 21 November 2011 - 02:14 PM
I currenty saw more then 28000 users online.
IPB online counter on the forum has gone to hell after this issue.
rebuild done.
should be ok now.
#18
Posted 21 November 2011 - 02:23 PM
The ostrich has survived for a lot
#19
Posted 21 November 2011 - 06:41 PM
I browsed reboot.pro w/o login.I disabled anonymous login to prevent this leeching from continuing.
No "Download" tab / buttom / link visible (or I didn't see). But by clicking one of the "Latest Files" I came into the download area and could browse it.
Browse is ok, but e.g. to download winbuilder.exe there is no way.
Is that intended?
Maybe unregistered users get a captcha for download something ???
Peter
#20
Posted 22 November 2011 - 09:23 AM
So, I prefer to see them registered and raise awareness for the work that is being done around here.
- pscEx likes this
#21
Posted 20 February 2012 - 09:19 AM
Sorry for reviving an old thread, but curious to know whether the counters were resetted to zero after the rebuild?IPB online counter on the forum has gone to hell after this issue.
rebuild done.
#22
Posted 20 February 2012 - 10:45 AM
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users