Big ISP = Big zombie army

Share this article:

Swathes of virus-infected PC’s are being hosted on some of the world’s biggest ISP’s including AOL, Bellsouth and Verizon.

Analysis of zombie networks by DDoS security company Prolexic showed high profile ISPs are the most likely to harbour compromised machines.

"It isn't surprising, it is these networks that are continually exploited to support large-scale DDoS attacks," said Barrett Lyon, CTO at Prolexic. "Just because a home user subscribes to a reputable brand doesn't mean they're safe from the online criminal fraternity."

Along with AOL, Bellsouth and Verizon, Comcast were criticized. Significantly, Earthlink, another sizeable ISP was not on the list of main offenders.

The report also highlighted major changes in the way that DDoS attacks have been coordinated over the last year, focussing less on layer-3 TCP and hitting weak DDoS mitigation devices.

"We have seen a 100 percent failure rate in several DDoS mitigation devices. Hardware does a poor job in identifying attacks that emulate legitimate traffic. Therefore, enterprises that rely on these devices are particularly vulnerable to this attack vector. Essentially, extortionists are becoming more intelligent and circumnavigating the security put in place to stop them," said Lyon.

The report also revealed that Hong Kong is the most infected country per capita. Which may explain the country's spam problem, due to be addressed by upcoming anti-spam legislation.

www.prolexic.com

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

TOP COMMENTS

More in News

Email promises free pizza, ensnares victims in Asprox botnet instead

Email promises free pizza, ensnares victims in Asprox ...

Cloudmark came upon an email that offers free pizza, but clicking on the link to get the coupon ends with victims being ensnared in a botnet.

Report: most orgs lacking in response team, policies to address cyber incidents

In its Q3 threat intelligence report, Solutionary learned that 75 percent of organizations it assisted had no response team or policies and procedures to address cyber incidents.

Flash redirect campaign impacts Carnegie Mellon page, leads to Angler EK

Flash redirect campaign impacts Carnegie Mellon page, leads ...

Malwarebytes found that, since early July, thousands of sites had been targeted in the campaign.