Showing posts with label Spamhaus. Show all posts
Showing posts with label Spamhaus. Show all posts

Tuesday, 14 July 2015

Teen Gets Community Service Because Of DDoS Attack On Spamhaus



A British teenager in Britain was sentenced to community service of 240 hours for his role in a major DDoS attack on anti-spam organization Spamhaus in 2013. At the peak was 300Gbps there to traffic sent to the website, which collapsed as a result, reports the BBC .

The teen would have offered as "mercenary" to get websites fee from the air. The attack against Spamhaus would possibly other parties were involved. After his arrest, was found a sum of 101,000 euros in his bank account. On his computer, investigators found the source code of the software that the attack was carried out. According to the judge there would be no likelihood of recurrence and the teenager really regret his actions. He therefore decided not to impose imprisonment.Spamhaus may know agrees with the judge's ruling, CIO Richard Cox so late.

Friday, 2 January 2015

Spamhaus Sees Increase In Botnet Servers In 2014


The past year were more servers detected that were used by botnets to control infected computers, according to Spamhaus in a new survey published. According to the anti-spam organization comes as no surprise that there are more botnet activity was observed.


Most botnet servers are located at providers with undermanned abuse departments, inadequate abuse policy or who are not able to detect abuse on their network efficiently and fight. The areas used by cyber criminals for their botnet servers are mainly registered with registrars in countries with lax laws and enforcement against cyber crime.



Last year saw Spamhaus 7182 unique IP addresses when a botnet server was hosted. An increase of IP addresses 525 (7.88%) relative to 2013. In 48% of cases, however, it was a hacked web server. The botnet servers were hosted on different network in 1183. Most botnet servers were found in the French OVH, German and Dutch Hetzner Leaseweb. Spamhaus notes that this is just about the raw numbers and the numbers say nothing about how long a botnet server is active, or the provider responds quickly to takedown requests.


When it comes to registrars where cyber criminals domain names for their botnet server register the top 5 consists only of Russian and Chinese registrars. Furthermore, are also American registrars extended in the overview. Regarding the tld who choose the cyber criminals is most likely to domains ending in .com and .ru. Further from the survey shows that most botnet servers are used for controlling banking Trojans, Trojans that are designed to steal money from online bank accounts. 4565 servers (63.5%) were used for this type of malware.