[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: UDP flood DDoS attack with spoofed IP addresses



On Fri, Dec 07, 2007 at 05:52:47PM +0800, Thomas Goirand wrote:
> Hi,
> 
> Has any of you had to deal with this type of attack? What is the way to
> get the real IPs and finally found out where is the bootnet and destroy it?
> 
Getting the source IPs can be tricky.  If you have a good relationship
with your upstream ISP, they can probably help out.  Destroying the
botnet is probably best left to law enforcement.

Regards,

-Roberto
-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com

Attachment: signature.asc
Description: Digital signature


Reply to: