Monday, May 27, 2013

DDoS for Hire

I recently read on Krebsonsecurity.com about a new concept which is DDoS for hire services.  These services allow users to purchase a DDoS on their enemies for a small fee.  The small fee is generally paid via PayPal.  These services generally cloke themselves as stress testing websites thus making their services sound legitimate.

Most of us who work in the security industry aren't surprised by DDoS attacks and how often they occur but  you might be surprised that that activity is now being outsourced and that in some instances it might be legal.  Even more surprising is that some of these providers may even be providing backdoors for the FBI to gain insight into the customers using these service providers.

These services usually are fairly inexpensive and often times are used to attack small sites or gaming sites.  Many might see these services as a minor threat however these are truly a significant threat.  What would happen if more and more groups decide to use large scale botnets to earn money by hosting DDoS attacks?

No comments:

Post a Comment