Telephony LIVE

Know a service provider that is DEFINING INNOVATION?

Nominate a service provider today for the Telephony Innovation Awards, to be held at Telephony LIVE: The 2008 Telecom Summit!

Learn more or Nominate!

         Subscribe in NewsGator Online   Subscribe in Bloglines

Zombies threaten ISPs

more on the topic

More Related Articles

Zombie computers are the single biggest threat to ISPs, according to an annual security survey conducted by Arbor Networks, as compromised PCs are being used to spew out spam, launch distributed denial-of-service (D-DOS) attacks and perpetrate identify theft and phishing schemes.

About 60% of the ISPs surveyed identified zombies as either their primary or secondary threat, said Mike Hollyman, manager of consulting engineering, for Arbor Networks. Zombies--or “botnet” computers, as they are also known--are PCs linked to the Internet that have been taken over, without their owners’ knowledge, and can be used to send email, store information or run programs. While there is nothing new about botnets, Hollyman said, they are being used more extensively and in different ways.

“They are definitely doing more things – like launching D-DOS attacks, sending spams, serving as open proxies, and being drop sites for storing ID information, and for phishing sites,” he said. By using a widely distributed set of PCs, criminals can use one set of zombies to send out spam with a phishing message and, when an unsuspecting customer provides log-in and identity information, store that on a different zombie computer which can be anywhere in the world, Hollyman said. The traffic flows are more widely distributed and not as easy to detect.

“That makes it harder for law enforcement to track down,” he said. “The way they are created these days, it is easy to select individual hosts they want to use in nefarious ways. They may pick a botnet for a phishing attack that is in a site where there is no legal enforcement or the resources are limited.”

According to survey respondents, networks of zombies have become smaller and more adaptive, with “more firepower and more effective attack vectors,” Arbor reports, as well as better organized command and control servers that use peer-to-peer communications.

D-DOS attacks are the most common use of botnets and can take down Web sites and e-commerce operations, Hollyman said. Survey respondents say these attacks are getting more professional and therefore more disruptive.

“The largest attack has gone up to 24 Gb/s, which is 2.5 times the average link speeds,” he said. “One of those attacks could cause severe collateral damage, and we have seen that in last 12 months. As service providers start to monitor deeper into their networks, they are seeing these attacks might be impacting their infrastructure.”

That means an attack against a specific customer site – and most attacks are that specific – has collateral impact on other customers served by the same network aggregation device.

Service providers are acquiring in-house expertise to address security issues as concerns have grown, Hollyman said, but they could use more help from law enforcement.

“They are proving they have the in-house skills, and they are no longer just packet pushers, they are in the position to gather information from security that will lead to global changes to attack vectors,” he said. “What they need now is better law enforcement options. Today, the response is fragmented. Many attacks involve multiple providers and multiple law enforcement entities and that can be difficult to manage.”

Get Updates Via Email

related resources

popular articles

Want to use this article? Click here for options!
© 2008 Penton Media Inc.

White Papers

WHITE PAPER

Network Evolution to SIP-based Networks: Migration Strategies for Success

This paper explores the benefits of optical control plane functionality for service providers. You’ll learn the benefits of Ciena's CoreDirector, the first intelligent optical switch. DOWNLOAD NOW

Podcasts

PODCAST

A NXTcomm08 Podcast: George Dobrowski, Broadband Forum

George Dobrowski, chairman and president of the Broadband Forum, speaks with Associate News Editor Sarah Reedy about the broadband industry and its relevant themes at NXTComm08. LISTEN

Blogs

BLOG

What happened at NXTcomm08

Recuperating from the big show, here are some reflections on some of the more prominent themes amid activity at the show... READ

E-Books

E-BOOK

READ E-BOOK: MANAGING THE CUSTOMER EXPERIENCE

This e-book explains how to keep your customers happy, reduce churn and strengthen profits. Sponsored by CA’s Wily Technology Division. READ NOW!

Events

FEATURED EVENT

NXTcomm08: News from the show as only Telephony can deliver!

The editors of Telephony have all the news from NXTcomm08, including keynote recaps, podcasts, video interviews and much more! Visit nxtcommnews.com.

TV

TV

Interview with Jim Hansen of Embarq at NXTcomm08

Tune in to Telephony TV to watch an interview with Embarq's Jim Hansen at NXTcomm08. WATCH IT NOW.

  • Telephony Content
  • Telephony Content

current issue

Current Issue

June 30, 2008

Telecom's top execs had lots to say at NXTcomm08 -- our editors covered every word. Read Now

Telephony Innovation Awards

The second annual Telephony Innovation Awards recognize service providers who have developed unique or first-to-market offerings that either utilize technology or address customers’ needs in a new way. Nominate a service provider for this distinctive award!
Learn more or
Nominate

NXTcomm08 Show Daily News

Get up-to-the-minute news from NXTcomm08 -- before, during and after the show! Hear interview podcasts, announcements, commentary and more. Visit www.nxtcommnews.com!

more news

Global >>

MORE

Ethernet >>

MORE

Independent >>

MORE

IPTV >>

MORE

IMS >>

MORE

WiMax >>

MORE

VOIP >>

MORE

FTTX >>

MORE

Access >>

MORE

Broadband >>

MORE

Wireless >>

MORE

Software >>

MORE

Podcasts >>

MORE

Get Updates Via Email

Browse Issues

  • June 30, 2008
  • Jun 16, 2008
  • May 19, 2008
  • May 5, 2008
  • Apr 28, 2008
  • Apr 14, 2008
  • Mar 31, 2008