CloudFare: Ad Network is used for DDoS attacks

CloudFare administrators report that they have detected a DDoS attack against their infrastructure and that it involved a advertising as well as unsuspecting users who are made partners in the attack by malicious ads.

cloudfare

The attack lasted only a few hours but managed to reach a volume close to 275.000 HTTP requests per second. The company also reports that they successfully mitigated the attack without having to download their server.

CloudFare says, speculate that this was a new kind of DDoS attack, in which ad networks and unsuspecting users are used.

The attack is channeled from movement and from real persons

According to of the company, suspect that a random web browsing by users from their computer or mobile, served them an iframe containing an advertisement.

The iframe requested the content of an ad from the ad network, which in turn requested the content of that ad from its servers that shares that particular ad.

Unknown to the user and the advertising network, the person who shares the ad (that is, the attacker) serves a malicious ad that contains JavaScript code and is intended to make a request to the victim (which in this case was a webpage hosted on the CloudFare infrastructure).

The attack came from China

The attack was very innovative in its approach, and according to CloudFare, does not include a TCP packet like the classic ddos ​​attacks, but it looks like a real daily move.

After analyzing millions of log lines, CloudFare says 99,8% of the traffic originated from Chinese IP addresses. The attackers probably come from the same country, mainly because of the comments left on JavaScript code, which was also in the Chinese language.

The 72% of users who came to the ddos ​​attack used a mobile device, 23% used a desktop computer, while 5% of users were tablet-users.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by Dimitris

Dimitris hates on Mondays .....

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).