Confronting Address Space Hijackers
Tawn writes "There's a great story on SecurityFocus about hijackers taking over large allocations of IPv4 space with forged documents and false business fronts. Los Angeles County and some big multinationals have had /16's pulled out from under them in the last few months, and used to inject spam. ARIN and network operators are trying to get a handle on the problem. The owner of a webhosting company that wound up with L.A. County's /16 called it 'borrowed space,' and said he paid $500 for it to a guy he met online."
1) Start a fake business
2) forge some documents
3) steal more IPs than the whole of china has
4) sell to spammers
5) PROFIT!!!!
(note, ??????? step not required)
There is no god
Right... "borrowed". And that "guy I met in the van in the back alley" was just letting me "borrow" that plasma screen TV for $500.
I moderate "-1, Fool"
How the hell can't you be a little suspicious of somebody offering you a Class C for $500 on the condition that you only use a small part of it? What, did it fall off a truck?
Try not. Do or do not, there is no try.
-- Dr. Spock, stardate 2822-3.
Oh.. no it's not..
SCO employee? Check out the bounty
you can buy them from microsoft, visit the msn sales site.
That Class A block that I bought on ebay from the guy from Nigeria who spammed me via SMS isn't legit? I better quickly cancel that wire transfer of money to his cousin, you know, the finance minister until I can check out his story about the president dieing in a plane crash and leaving all that money that he was going to invest in helping Quark get its native OSX version done.
That this guy would end up in jail and that big guy in the cell next door merely "borrows" his ass for a pack of cigarettes.
That's like saying, "Fucktard6969 on IRC said that the software he's hooking me up with is legit"
What's the point of stealing IPs to spam? Haven't these guys ever heard of wardriving for IPs?
These guys really need some serious technical help...
(Yes, not meant seriously for those law/spam enforcement types out there!)
The party of stupid and the party of evil get together and do something both stupid and evil, then call it bipartisan.
You can buy 10.x.x.x from me if you like - only $0.01 per IP address
I have a whole bunch of 10.0.0.0/8 address spaces for sale. :)
Cypherpunks: Civil Liberty Through Complex Mathematics. Those who live by the sword die by the arrow.
maybe he wasn't stealing them for spam, maybe he had alot of computers and just wanted to comply with his states Super-DMCA ???
I had the same reaction. From the article:
"There's anything up to 100 of these blocks out there on the loose," estimates Richard Cox.
Where can I get one? I was just saying to myself the other day, 'my 15-system home network REALLY needs some routable address space.' And my bonus check for this quarter just came in... what great timing!
You may disagree, but to be blunt, you're wrong. -tgd
Considering that at MIT, Pop machines and Coffee Makers have IP's, they just might be using a reasonable amount of their /8
"You've got an invalid haircut" -Warren Zevon - Life'll Kill Ya
The Brooklyn Bridge, the New York Sewer system.
Send me a check for $500 and they will be yours!
It isn't a lie if you belive it.
You forgot toasters. I have a full LAN of all sorts of toasters waiting for IPv6.
"You know, it'd be a shame if something were to happen to that subnet..."
Arm DNS Registrars with guns and tazers
Ask users to take off shoes before mass e-mailing
Round up geeks and other suspicious technical people as 'persons of interest' to secure undisclosed locations...
Wait, these guidelines are from Homeland Security.
Mod Karma -1: I sed bad wurds. If I cep my mouf shut, I wud be at riyses.
Jerry: Today on our show, we have people who have stolen IP addresses to send SPAM. Why did you do it Larry?
Larry: Jerry, it's an addiction I have. I just feel the need to tell everyone that by sending money to my friend in Nigeria, they can get a stimulating diplomia and have investment opportunities in appendage lengthening. Is that so wrong? Audience boos.
Jerry: Not everyone agrees with you. Let's bring out a system administrator whose IP you hijacked.
SysAdmin: Appears from backstage. Upon seeing Larry, rushes him fists raised. You stupid #$@&! I'll kill you! I'll kick your fsking @$$! Throws chair. Is restrained by large bald stagehand. You stole my IP! I'll get you!
But what if you want every node of each of those Beowulf clusters to have its own public IP address? :)
It's like having "Emergency Pants."
"You never know."
What I would worry about is Apple. I doubt there are 16 million Apple computers in existance, let alone at apple inc.
And I'd keep an eye on Ford. The day that Ford puts a [working] wireless computer into each car, we'll all be on IPv8
My friend scanned 21.0.0.0...and he disappeared the next day ;(
When some one can tell me how to get back my ICQ # 116117 AND keep it for more then 48 hours, I be impressed
Si vis pacem, para bellum! For evil to succeed good men need only do nothing!
Well, I use IMAP myself.
Fuckem. I'm going to start using 9.0.0.0/8 internally so one day they can deal with a clash.
Find that in your due diligence!
Whoever he is, he's got a LOT of bandwidth. Ping/trace it and see. They even had the audacity to create a server with MY username!!!
warez.texas.net
B
Executives at SCO, the RIAA, Amazon and other large companies sufered public embarrisment when it was annouced that IP was being stolen and they rushed home to see if they owned any of it to sue over.
Beep beep.
"[he] said he paid $500 for it to a guy he met online."
That must be the same guy that sold me my penis enlarger.