Israeli DDoS Provider 'vDOS' Earned $600,000 In Two Years (krebsonsecurity.com) 74
pdclarry writes: Brian Krebs writes that he has obtained the hacked database of an Israeli company that is responsible for most of the large-scale DDoS attacks over the past (at least) 4 years. The vDOS database, obtained by KrebsOnSecurity.com at the end of July 2016, points to two young men in Israel as the principle owners and masterminds of the attack service, with support services coming from several young hackers in the United States. Records before 2012 were not in the dump, but Krebs believes that the service has actually been operating for decades. The report starts by saying, "vDos -- a so-called 'booter' service has earned in excess of $600,000 over the past two years helping customers coordinate more than 150,000 so-called distributed denial-of-service (DDoS) attacks designed to knock websites offline -- has been massively hacked, spilling secrets about tens of thousands of paying customers and their targets." In regard to how long the service has been operating, Krebs believes the service has been operating for decades "because the data leaked in the hack of vDOS suggests that the proprietors erased all digital records of attacks that customers launched between Sept. 2012 (when the service first came online) and the end of March 2016."
Re: (Score:2)
Re: (Score:2)
Re: (Score:2)
Re: (Score:3, Insightful)
Re: (Score:1)
Still upset that your side LOST WW2?
Re: (Score:2)
Re: (Score:1)
Re: (Score:2)
Re: (Score:2)
And here's the truth [minuteswithmessiah.com].
Quick exert:
Shachar
Re: (Score:2)
Fans of your renowned Hosts File Engine are in shock following this revelation of rabid anti-Semitism. They're speechless, I tell you!
Re: (Score:2)
*laughter*
Re: (Score:1)
Antisemitism (Score:2)
So, let's see how to distinguish between legitimate criticism and anti-semitism.
If someone says "Since they are in Israel, they won't get punished" (as some here did), that's criticism of Israel. It is incorrect criticism, devoid of any substantiation and relation to the truth, but it is a legitimate criticism. We can conduct a facts based discussion to sort out whether it is true or not.
If someone reflects from those two people to their entire nationality, not to mention entire religious group, with no bea
Inaccurate summary (Score:2, Insightful)
The article does not claim to prove the offending service has been in operation for decades. Instead it, says this:
Although I can’t prove it yet, it seems likely that vDOS is responsible for several decades worth of DDoS years. That’s because the data leaked in the hack of vDOS suggest that the proprietors erased all digital records of attacks that customers launched between Sept. 2012 (when the service first came online) and the end of March 2016.
Krebs is using "DDoS year" metric to describe the scale of traffic involved. -PCP
Re: (Score:2)
Re: Inaccurate summary (Score:5, Funny)
Slashdot summary isn't great, it's "DDoS decades" (Score:5, Informative)
The summary isn't great, it seems to contradict itself a couple of times. If the site "erased all digital records of attacks that customers launched between Sept. 2012 ... and the end of March 2016", then how do you have data for "the past two years"? I skimmed the whole article and didn't find an answer to that one, my best guess is that they meant the attack data itself was erased, but the service requests, chat logs, etc that Krebs references were not erased.
Regarding the "operating for decades" vs "Sept. 2012 (when the service first came online)", it's because Krebs is writing about the aggregate amount of time wasted by the DDoS. He calls it "DDoS seconds" which he then rolls up to years. He is not suggesting the service has been operating for decades, but rather that in the past 5 years the service has caused the equivalent of decades worth of service disruption. (So if 30 hosts are disrupted for 2 hour, that's 60 hours of downtime total, or "DDoS 2.5 days", even though the DDoS attacks only lasted 2 hours and ran in parallel.)
The most interesting part of the article is that subscribing to the DDoS service was only $30/month. That sounds cheaper than paying for DDoS protection/mitigation services, and makes me wonder if vDOS will change their service into a protection racket (pay us to be on our "protected" list so other members can't DDoS you.)
Re: (Score:2)
I think the "operating for decades" refers to the people and their DDoS activities and "sept. 2012" refers to the specific website they use to offer those activities.
Re: (Score:2)
Sorry, my bad, you were right and the summary is truely that bad.
Re:Slashdot summary isn't great, it's "DDoS decade (Score:4, Informative)
Principle (Score:2)
Good work, you know how to right it wrong.
And I didn't know 5 years were enough to count as "decades".
Re: (Score:2)
Sure enough, it's 0.5 decades.
I'll go jog a few femtoparsecs today.
Protected by Cloudflare (Score:3, Interesting)
“The DDoS-for-hire service is hidden behind DDoS protection firm Cloudflare”
Nuff said.
Re: (Score:2)
Consequences? (Score:1)
Now that these guys are exposed as living in a country supposedly with laws, what will happen to them.
They didn't steal or break any major infrastructure, but they did cause quite a bit of mayhem.
Perhaps a bit of computer timeout to provide time to think and retrain for something productive.
Re: (Score:2)
Assuming a complaint was filed with the Israeli police, and the evidence is strong (both assumptions are far from trivial), most likely outcome is that they go to jail for a few years.
That's assuming there is no extradition request from another country.
Shachar
Re: (Score:2)
This does not appear to be government sponsored operation. That was precisely my point.
Shachar
Re: Consequences? (Score:1)
Well if the logs show that any US companies have been affected, I expect a couple of extradition warrants to follow soon after.
Israel (Score:2)
Re: (Score:2)
Citation needed, please.
If they do, it will be the first time I hear of such a case.
Shachar
Re: Israel (Score:1)
These guys were hacked, meaning they have proved themselves as inadequate for shadowy IDF units.
Not operating for decades (Score:4, Informative)
How is $600K in two years a problem? (Score:2)
For a company! The average /.er must be over half of that, >$150K/annum.
Peanuts (Score:2)
Re: (Score:2)
Re: (Score:2)
Whoever coined the "vDOS" name missed out on a great opportunity. It should have been DDoSaaS.
DUMBaasS naming scheme you got there. :-)