close
close

Solid bot network that appeared overnight

A newly discovered network bot network that estimates 30,000 webcams and video recorder-with the greatest concentration in the USA HAT, a security researcher within Nokia is probably delivering the largest denial of service attack.

The botnet, which was followed under the name Eleven11Bot, was first to light at the end of February when researchers observed a large number of geographically distributed IP addresses in the Deepfiel Emergency Response team that provided “hypervolumetrical attacks”. Eleven11Bot has been providing large attacks since then.

The volumetric doses switch off the services by consuming all available bandwidths either within the targeted network or the connection to the Internet. This approach works differently than exhaustion doses that exceed the computing resources of a server. Hypervolumetrical attacks are volumetric doses that provide amazing amounts of data that are typically measured in the terabits per second.

Johnny-Come has recently set up a new data set

With 30,000 devices, the ELF11Bot was already exceptionally large (although some Botnets exceed well over 100,000 devices). Most of the participating IP addresses, Nokia researcher Jérôme Meyer told me that it had never been seen that they were involved in DDOS attacks.

In addition to a 30,000-node bot network that seems to appear overnight, another outstanding feature of Elf11Bot is the data volume of the data record size that sends its goals. The largest that Nokia from Elf11Bot has so far occurred on February 27 and reached a climax of around 6.5 terabits per second. The previous record for a volumetric attack was reported in January at 5.6 Tbit / s.

“Eleven11Bot has specific sectors, including communication service providers and gaming hosting -infrastructure that use a variety of attack vectors,” wrote Meyer. While the attacks are based on the data volume in some cases, others focus on flooding a connection with more data packets than can process a connection, with the numbers between “a few hundred thousand to several hundred million packages per second”. The service deteriorations caused by some attacks took several days, some of which have been live live for this post.