08 May 2006
Controversial Israeli security company Blue Security has been under siege from spammers for the past few days.
The company's business websites had been under a sizeable denial of service attack for a number of days, it emerged over the weekend. The most likely attackers are spammers angered at the firm's aggressive tactics.
Blue Security has been offering a tool for download to members of its 'Do Not Intrude' registry since last year.
The Blue Frog tool traces and floods senders of unwanted email with opt-out mails, a technique that has been likened to spamming itself.
But members of the registry received threatening emails from the spamming community last week, warning them to quit the service.
A large-scale distributed DoS attack was underway shortly after. At some points, Blue Security reckons it was being flooded by around 10 million packets a second.
Guy Rosen at Blue Security emailed the Sans Internet Storm Centre giving a breakdown of the week's activities.
"Monday: Spam-based threats and accusations; Tuesday: Our website is cut off from outside Israel by a mysterious routing change; Later on, huge DDoS lashes out at our servers; DDoS continues as we relocate our service to bring it back up. One estimate was of something of the order of 10 million packets/sec coming in," he wrote.
However, at one point it emerged that Blue Security had drawn yet more concern from other areas of the industry by seeking to dodge the DDoS attack.
The company reinstated an old blog and then rerouted its DNS to the blog address. The weight of the attack apparently brought down the entire blogging services of TypePad and LiveJournal.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Hands on with the highly anticipated Android 4.0 Ice Cream Sandwich hybrid tablet
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Java / Oracle Coherence Technical / Solution Architect...
ASP.Net/C#/Web Development/Desktop Development/Winforms...
My Major client urgently requires an experienced contract...
Decision Systems Analyst West Midlands £19-24,000 Are...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Website down again?
Does anyone know why www.bluesecurity.com is down again? (18th May). The main site was working again for a few days, and the community site 'under maintenence', but now there is nothing.
Posted by: Bez 18 May 2006
Innacurate artical
only one opt out request is spent to the site advertised in the spam. This complys with cann spam regulations. What more before opt out requests are sent the site owner is contacted and is asked to stop spamming. It is only continued spamming that results in opt out requests.
Posted by: wiskers69 10 May 2006
Why Blue Security redirected traffic
Blue Security redirected their traffic to SixApart because they were under a blackhole filter attack, not a DDOS attack. It was 30 minutes after they repointed their domains that the DDOS attack was launched.
Posted by: skylights 09 May 2006