Denis Makrushin - Web under pressure DDoS as a service

16
WEB UNDER PRESURE DDoS as a Service Denis Makrushin (@difezza) Kaspersky Lab http://defec.ru/

description

 

Transcript of Denis Makrushin - Web under pressure DDoS as a service

Page 1: Denis Makrushin - Web under pressure DDoS as a service

WEB UNDER PRESUREDDoS as a Service

Denis Makrushin (@difezza)Kaspersky Lab

http://defec.ru/

Page 2: Denis Makrushin - Web under pressure DDoS as a service

2

It was like that

Page 3: Denis Makrushin - Web under pressure DDoS as a service

3

Nowadays : application layer

Page 4: Denis Makrushin - Web under pressure DDoS as a service

4

Piece of the WEB-bot

Page 5: Denis Makrushin - Web under pressure DDoS as a service

5

Nowadays: IaaS

Page 6: Denis Makrushin - Web under pressure DDoS as a service

6

Nowadays: DNS Amplification

Disadvantages:

• Short life cycle of infected machines

• Support clouds with a lot of instances

• Trivial generators of traffic

Page 7: Denis Makrushin - Web under pressure DDoS as a service

7

Burst in tomorrow: SaaS

Page 8: Denis Makrushin - Web under pressure DDoS as a service

8

DoS, DDoS, stress…

Page 9: Denis Makrushin - Web under pressure DDoS as a service

9

Load testing as a Service

• Legitimate traffic

• The load is not limited by owners of service

• Cheap load

• Many services do not verify actions

• User-owned scenarios

• Analysis of a victim for a “heavy" content

Page 10: Denis Makrushin - Web under pressure DDoS as a service

10

Proof of Concept: Loadimpact.com

Page 11: Denis Makrushin - Web under pressure DDoS as a service

11

Analytics

Page 12: Denis Makrushin - Web under pressure DDoS as a service

12

Without registration and SMS: loaddy.ru

Page 13: Denis Makrushin - Web under pressure DDoS as a service

13

SaaS Amplification

Page 14: Denis Makrushin - Web under pressure DDoS as a service

14

SaaS 4 DDoS• Traffic exchange• Whois-services• Monitoring services• All that "disturbs" the victim

Page 15: Denis Makrushin - Web under pressure DDoS as a service

15

If you have conscience

Page 16: Denis Makrushin - Web under pressure DDoS as a service

Thanks!Any questions?

[email protected]/difezza

http://defec.ru/