Domain: caida.org
Stories and comments across the archive that link to caida.org.
Stories · 15
-
A Third of the Internet Experienced DoS Attacks in the Last Two Years (sciencedaily.com)
Long-time Slashdot reader doom writes: Over a two year period, a third of the IPv4 address space have experienced some sort of DoS attack, though the researchers who've ascertained this suspect this is an underestimate. This is from a story at Science Daily reporting on a study recently presented in London at the Internet Measurement Conference.
"As might be expected, more than a quarter of the targeted addresses in the study came in the United States, the nation with the most internet addresses in the world. Japan, with the third most internet addresses, ranks anywhere from 14th to 25th for the number of DoS attacks, indicating a relatively safe nation for DoS attacks..."
The study itself states, "On average, on a single day, about 3% of all Web sites were involved in attacks (i.e., by being hosted on targeted IP addresses)."
"Put another way," said the report's principal investigator, "during this recent two-year period under study, the internet was targeted by nearly 30,000 attacks per day." -
IPv6 Deployment Picking Up Speed
An anonymous reader writes "The Internet's addressing authority (IANA) ran out of IPv4 Internet addresses in early 2011. The IPv6 protocol (now 15 years old) was designed exactly for this scenario, as it provides many more addresses than our foreseeable addressing needs. However, IPv6 deployment has so far been dismal, accounting for 1% of total traffic (the high-end of estimates). A recent paper by researchers at the Cooperative Association for Internet Data analysis (CAIDA) indicates that IPv6 deployment may be picking up at last. The paper, published at the Internet Measurement Conference (IMC) shows that the IPv6 network shows signs of maturing, with its properties starting to resemble the deployed IPv4 network. Deployment appears to be non-uniform, however; while the 'core' of the network appears to be ready, networks at the 'edges' are lacking. There are geographical differences too — Europe and the Asia Pacific region are ahead of North America." -
The Other Side of the Sprint Vs. Cogent Depeering
Swoolley writes "A month back this community discussed the Sprint vs. Cogent depeering. Now a story I wrote for Forbes.com tells the inside story of the fight, based on the lawsuits the two companies filed against each other in Virginia state court. For once, thanks to those suits, the public gets to see the details of a confidential peering agreement between two of the Internet's largest autonomous systems, as well as the circumstances leading up to the depeering. (Which company is in the right? Read the facts and decide for yourself.) While some people have argued that the depeering is reason for more government regulation, the Forbes story makes the case that details of the recent Cogent vs. Sprint fight argue for exactly the opposite: keeping the Internet backbones free of government meddling." -
Witty Worm Kick-Start Methods Revealed
voixderaison writes "Security Focus reveals more details about the methods used to seed the Witty worm last year. You might want to read the analysis at CAIDA for background and refresher on this groundbreaking worm, which spread very rapidly through a small population of systems, and then waxed their hard drives. A flaw in its random number generator seems to have protected 10% of the internet from the Witty worm." -
Berkman Center Releases Digital Media Policy Paper
Copyfighter writes "Last year marked another messy chapter in the music and movie industries' transitions online. Legitimate offerings multiplied while the RIAA and MPAA continued their lawsuits against P2P systems and users, even as P2P traffic reached new heights. How -- if at all -- should policymakers attempt to resolve emerging digital media conflicts? The Berkman Center's Digital Media Project today released a new research study examining options for government action and how it could affect four different business models for the distribution of digital media. The authors caution that government intervention is currently premature because it is unlikely to strike an appropriate balance between the many competing interests at stake." -
P2P Not Dead, Just Hiding
adavies42 writes "Contrary to media reports, P2P is not dying (PDF); it's just becoming harder to detect. In a paper for CAIDA, the Cooperative Association for Internet Data Analysis, researchers present evidence that the supposed decline in P2P traffic is actually due to a decline in easy-to-track protocols as those that change port numbers on a regular basis become more popular." -
Analysis of the Witty Worm
DavidMoore writes "The Cooperative Association for Internet Data Analysis (CAIDA) and the University of California, San Diego Computer Science Department have an analysis of the recent Witty worm. Among other things, Witty was started in an organized manner with an order of magnitude more ground-zero hosts than any previous Internet worm." -
Analysis of the Witty Worm
DavidMoore writes "The Cooperative Association for Internet Data Analysis (CAIDA) and the University of California, San Diego Computer Science Department have an analysis of the recent Witty worm. Among other things, Witty was started in an organized manner with an order of magnitude more ground-zero hosts than any previous Internet worm." -
SCO Not Lying About DoS Attack
Licensed2Hack writes "The Cooperative Association for Internet Data Analysis (CAIDA), part of the San Diego Supercomputer Center at the University of California, San Diego has an analysis of the recent DDOS on SCO.com. Netcraft also has more information in their article and analysis graphs. Seems SCO was hit with a 50,000 packet-per-second SYN flood peak, which yields approximately 20 Mb/s each way, or about the capacity of a DS3 line." -
SCO Not Lying About DoS Attack
Licensed2Hack writes "The Cooperative Association for Internet Data Analysis (CAIDA), part of the San Diego Supercomputer Center at the University of California, San Diego has an analysis of the recent DDOS on SCO.com. Netcraft also has more information in their article and analysis graphs. Seems SCO was hit with a 50,000 packet-per-second SYN flood peak, which yields approximately 20 Mb/s each way, or about the capacity of a DS3 line." -
Slashback: Slammer, Frames, Pop-Ups
Slashback tonight with more on SBC's claim to own patents covering basic Web navigation techniques, an eyebrow-raising look at Slammer's spread, bad news for Ogg streams from the BBC, and more. Read on for the details. Update: 02/04 00:13 GMT by T : And late-breaking good news from SDF regarding its Public Access UNIX System.FedEx should take notes. nweaver writes "We have completed our preliminary analysis of the Sapphire/Slammer SQL worm. This worm required roughly 10 minutes to spread worldwide, scanning at a peak rate of over 55 million IP addresses per second, making it by far the fastest worm to date and nearly two orders of magnitude faster than Code Red. It infected at least 75,000 victims and possibly considerably more. The remarkable speed was due to the use of a bandwidth-limited scanner. There were also two bugs in the random number generator. Copies of our analysis are available from CAIDA, Silicon Defense, and UC Berkeley."
"Sir, this patent application needs to filled out in ink. Not Crayon." We recently posted that the company SBC was calling in the chips on patents it holds which the company claim cover certain types of navigation links found on many web pages. Dan Gillmor writes "Noticed the link to Cringley's piece. Well, I did ask readers for prior art and got quite a bit, some of which I've posted..."
Speaking of SBC, theodp writes "The SBC Intellectual Property folks are back in the news, this time for donating a $7.3 million virus screening patent to the University of Texas. While patent donations are one of the latest twists on corporate philanthropy, the practice has aroused the curiosity of the IRS as a possible tax avoidance scheme."
I wonder how much they'd feel justified in writing off if they donated their web patent portfolio to the FSF.
Can we call this an on-again, off-again relationship? Albanach writes "It seems the BBC who had pioneered Ogg Vorbis broadcasting on a serious scale have abandoned Ogg indefinitely. They say other work commitments make Ogg support no longer a priority. Their statement can be read here"
What, and let all my pigeons escape? FedeTXF writes "We already love pop-up blocking in Mozilla and some other related browsers, now Blogzilla is reporting a great trick to get rid of embedded ads (banners and iframes) using plain CCS and the always amazing Mozilla flexibility and openness. Go check this page if you are anxious to see how to set it up."
Did you have your video camera trained on Columbia? Finally, Child of Apollo writes ""For anyone who has recorded video or taken photos that they believe may be of aid in the investigation of the Space Shuttle Columbia accident, NASA has established a special location on the Web where Internet users may upload their media files to be reviewed by NASA." Although sad news all around, thanks to pleasant for the link."
Here's the late-breaker. fonixmunkee writes "looks like SDF will return soon. a message stating that they negotiated a new contract graced the single page in the "members area" of the temporary www.lonestar.org, but did not cite who specifically with. a few different ideas were tossed around for hosting, so only time will tell with who. i also just today got an e-mail from the Washington State Attorney General's Office that offered a small ray (read: none) of hope for assistance with SDF's run-in with NWLink. (NWLink breached SDF's contract.) hope all is well soon." This is good news, especially so soon after SDF got the rug yanked from under them.
-
CAIDA Released Code-Red Worm Post Mortem
davidu writes "David Moore at CAIDA (The Cooperative Association for Internet Data Analysis) was monitoring an entire /8 network while the code-red worm traversed the net. His findings are really interesting and show just how swiftly code-red moved across the net and infected hosts. It was the sheer stupidity of the worm's creator and the skill of some network admins which limited the worms attack and DoS potential. note: Check the graphs, these pictures really do tell a thousand words." -
Study on DoS Activity In The Internet
Random Walk writes "A group of researchers from the UCSD Supercomputer Center has used a technique they call "backscatter analysis" to study the prevalence and targets of DoS attacks. They claim that their study is "the only publically available data quantifying denial-of-service activity in the Internet", and provide interesting statistics on attack rates, durations, and victims." CT:This is an amazing report. -
Paper in nature on "Internet Tomography"
rafial writes "A group called CADIA has just published a paper in Nature that describes there work on " Internet Tomography." Essentially they are firing large numbers of pings trough the Internet and analysing the results to analyze topology and performance. Lots of neat pictures, and they are using FreeBSD to conduct their research! " Sweet looking stuff. Check it out. -
Display the World's Backbones--Visually
Jonathon Rubin writes "This nifty government+corporation run organization, CAIDA, basically around to build up a lot of stats about the Internet, has made a Java applet that will show complying backbones' geographical routes--kinda like those pictures in the back of airline magazines, showing where they fly. You can zoom in, see where each route goes, see how much bandwith different companies have, and just basically wonder "How DID UUnet get so big?" Check it out here [Warning: it's sorta buggy, and has trouble refreshing on my PowerMac] "