. Military Space News .
Who Cyber Smacked Estonia

DDoS attacks work by getting the networks of slave computers to bombard the systems being attacked with requests for information -- overloading them and causing the Web servers to crash.
by Shaun Waterman
UPI Homeland and National Security Editor
Washington (UPI) June 11, 2007
The recent cyber attacks on Estonian government networks were likely carried out by politically motivated hacker gangs, not Russian security agencies as some early reports suggested, according to assessments conducted by the U.S. government and the private sector.

The attacks were crude so-called distributed denial of service, or DDoS, attacks, utilizing global networks, or botnets, of compromised computers, known as slaves, or zombies, often owned by careless individuals, "including some in the United States," according to a statement from Mike Witt, deputy director of the U.S. Cyber Emergency Response Team.

The team, known by the acronym U.S.-CERT, is the element within the Department of Homeland Security that "coordinates defense against and responses to cyber attacks across the nation," according to its Web site.

"U.S.-CERT became involved after NATO, of which Estonia is a member, contacted the U.S. for computer incident response assistance to a cyber attack," said Witt in the statement. His team "worked with an international group -- the Forum of Incident Response and Security Teams, or FIRST -- to coordinate a global response to the attacks, which were carried out by computers scattered across the globe," he said.

The Witt statement did not address the question of the origin of the attacks, but former senior U.S. cybersecurity official Bruce Brody said analysts in both the private sector and the U.S. government had told him "the prevailing assessment" was that no "state actor" was behind the attacks.

"This was a brute force, crude attack," he told UPI, "without the elegance and precision" characterizing the sophisticated cyber-warfare capabilities of major powers.

Professor James Hendler, former chief scientist at the Pentagon's Defense Advanced Research Projects Agency, described the attacks as "more like a cyber riot than a military attack."

Such politically motivated attacks by organized hacker networks -- known to specialists as "hactivism" -- were also seen against Danish Web sites after the publications of cartoons of the Prophet Mohammed in a magazine there.

"The size of the cyber attack, while it was certainly significant to the Estonian government, from a technical standpoint is not something we would consider significant in scale," said Witt, adding he believed the United States would be able to defend itself easily against attacks on a similar scale.

"While no one is immune to cyber attacks," he said U.S. government networks were "more sophisticated, extensive and diverse," making them "less susceptible to disruptions or attacks."

DDoS attacks work by getting the networks of slave computers to bombard the systems being attacked with requests for information -- overloading them and causing the Web servers to crash.

Hendler told UPI that DDoS attacks "are moving lower and lower down the list of (cyber) threats," but added this was generally because they are poorly targeted.

Like any other weapon, he said, the effectiveness of DDoS attacks could be maximized by careful targeting -- for instance, of a crucial system at a particular time it was likely to be very busy, or vulnerable to overload for some other reason.

"You could do it surgically," he said. "If you did some work, you could probably find information-critical (U.S. government) systems that could be brought down ... with a big enough attack."

On the other hand, he said, "the government is pretty attuned to the possibilities of these types of attacks" and had taken extensive counter-measures.

Witt said a key challenge in countering botnets was identifying the source, "in part because of sophisticated new peer-to-peer type structures now being adopted by hackers."

By employing so-called peer-to-peer technology, "where the network is recruited and organized horizontally, from one compromised computer to another, rather than vertically, with each reaching back to the origin, it is much more difficult to track and source the hackers behind the attacks," he said.

Source: United Press International

Community
Email This Article
Comment On This Article

Related Links
U.S.-CERT
Cyberwar - Internet Security News - Systems and Policy Issues



Memory Foam Mattress Review
Newsletters :: SpaceDaily :: SpaceWar :: TerraDaily :: Energy Daily
XML Feeds :: Space News :: Earth News :: War News :: Solar Energy News


US Intel Budget May Reach 60 Billion Dollars
Washington (UPI) June 11, 2007
The secret budget for U.S. intelligence is much higher than previously thought, perhaps as much as $60 billion, according to the extrapolation of figures inadvertently left buried in a computerized government slideshow.







  • Beijing Offers New Model For Superpower Public Relations
  • Black Belt Putin Wrongfoots Critics
  • Putin's State Of Mind
  • Sarkozy Debuts On World Stage At G8 Summit

  • Russia Agrees To Help End North Korea Banking Row
  • UN Nuclear Chief Says Iran Crisis Must Be Defused
  • Iran To Retaliate If Attacked From US bases In Gulf Iranian Parliament Warns
  • North Korea Test-Fires Short-Range Missiles

  • Advanced Anti-Radiation Guided Missile Achieves Major Milestone
  • Coping With Gaza's Rockets
  • Raytheon And UAE Sign Rolling Airframe Missile Contract
  • Boeing Wins Next Phase Of US Air Force Missile Technology Program

  • Democrats For Missile Defense
  • Putin Missile Shield Proposal Intensifies Tug-Of-War
  • Azerbaijani Radar A Looming Presence For Nervous Inhabitants
  • Lockheed Team Delivers Software For Ground Component Of Space-Based Missile Warning System

  • Airlines Pledge Emissions Cuts But Warn EU Curbs Could Jeopardise Sector
  • Sandia And Boeing Collaborate To Develop Aircraft Fuel Cell Applications

  • U-Tacs To Provide ISTAR Capability For UK Armed Forces
  • Boeing Australia Limited To Provide ScanEagle UAV To Troops In Afghanistan
  • MQ-8B Fire Scout To Enter Production

  • US Planning For Smaller Long-Term Presence In Iraq As DoD Chief Replaced
  • US War Czar Admits To Doubts Over Iraq Surge
  • An Escalating War Surges Forward Into The Sands Of Iraq
  • Former Generals Slam Iraq-Korea Comparison

  • Raytheon-Led Warrior Training Alliance Wins US Army Warfighter FOCUS Program
  • Thales And Boeing Announce FRES Team
  • QinetiQ's Polarisation Technology Results In GBP800K Contract For Further Research Into Tripwire Detection

  • The content herein, unless otherwise known to be public domain, are Copyright 1995-2006 - SpaceDaily.AFP and UPI Wire Stories are copyright Agence France-Presse and United Press International. ESA PortalReports are copyright European Space Agency. All NASA sourced material is public domain. Additionalcopyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by SpaceDaily on any Web page published or hosted by SpaceDaily. Privacy Statement