|
[ Message Precedent sur la mailing][ Message Suivant sur la mailing][ Precedent dans le fil][ Prochain dans le fil][ Index par Date][ Index par fil]
Re: [Full-disclosure] Ubisoft DDoS
Well, we don't know exactly how the servers were configured. There might have been some kind of issue with the coding or the configuration of the DRM servers that wasn't noticed during testing. After all, these sorts of big-budget games sell millions of copies in the opening weekend. Even simulating that kind of load is an expensive proposition. There might have been some issue with the server that only became visible when there were millions of simultaneous clients all trying to authenticate themselves simultaneously. Remember what happened with AT&T's iPhone activation fiasco? Who's to say that something similar didn't happen here?
-- Rohit Patnaik On Tue, Mar 9, 2010 at 3:59 PM, Jan Schejbal <jan.mailinglisten@xxxxxxxxxxxxxx> wrote:
Am 09.03.2010 21:11, schrieb James Matthews:
> I don't see why they didn't just block the attack. It must be more then
> this.
If the attack behaved like LOTS of legitimate clients, it might have
been hard to lock out the bots while not locking out players.
The option that the attack is just made up as an excuse for too few
resources to support all the players should also not be forgotten,
although I consider that improbable.
Sincerely,
Jan
Full-Disclosure - We believe in it.
Charter: link://[click]
Hosted and sponsored by Secunia - link://[click]
Archives de la liste de diffusion Secunia
Archives de la liste de diffusion Full Disclosure
Mini-Tagwall des articles publiés sur SecuObs : | | | | sécurité, exploit, windows, attaque, outil, microsoft, réseau, audit, metasploit, vulnérabilité, système, virus, internet, usbsploit, données, source, linux, protocol, présentation, scanne, réseaux, scanner, bluetooth, conférence, reverse, shell, meterpreter, vista, rootkit, détection, mobile, security, malicieux, engineering, téléphone, paquet, trames, https, noyau, utilisant, intel, wishmaster, google, sysun, libre |
Mini-Tagwall de l'annuaire video : | | | | curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit, exploit, lockpicking, linux, attack, wireshark, vmware, rootkit, conference, network, shmoocon, backtrack, virus, conficker, elcom, etter, elcomsoft, server, meterpreter, openvpn, ettercap, openbs, iphone, shell, openbsd, iptables, securitytube, deepsec, source, office, systm, openssh, radio |
Mini-Tagwall des articles de la revue de presse : | | | | security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone, server, inject, patch, apple, twitter, mobile, virus, ebook, facebook, vulnérabilité, crypt, source, linux, password, intel, research, virtual, phish, access, tutorial, trojan, social, privacy, firefox, adobe, overflow, office, cisco, conficker, botnet, pirate, sécurité |
Mini-Tagwall des Tweets de la revue Twitter : | | | | security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall, network, twitter, vmware, windows, microsoft, compliance, vulnerability, python, engineering, source, kernel, crypt, social, overflow, nessus, crack, hacker, virus, iphone, patch, virtual, javascript, malware, conficker, pentest, research, email, password, adobe, apache, proxy, backtrack |
|
|
|
|
|