Quick Login   
 
Register AdminFusion Tutorials
 
Featured Sponsors


One.com Domain and Hosting


Register
Forum of the Month
Australian Webmaster
fotm

A webmaster forum specifically catering for Australian site owners. We discuss site development, marketing and management issues.

Tag Cloud
Latest Threads
Forum Stats
7,840 Members
164,825 Posts
34 Users Online

Please welcome our newest member, jinshiro!

Affiliates
Go Back AdminFusion » Management » Security and Legal Issues » Someone trying to DOS ATTACK my forums
Welcome to the AdminFusion. AdminFusion is the ultimate resource for forum administrators and moderators. With exclusive articles, interviews with the experts, free downloadable skins, and the revolutionary post exchange system - PostFusion, AdminFusion is the place to go for all of your forum needs.  By joining AdminFusion, you will become part of a thriving admin community and immediately gain access to all of these resources. Registration is fast, simple and absolutely free so please join us today!
Want more than our forums? Try these: Post Fusion Forum Matrix
Old 11-10-2005, 08:04 PM   #1

Title: Rookie

Points: 1,917, Level: 12Points: 1,917, Level: 12Points: 1,917, Level: 12
Level up: 13%, 233 Points neededLevel up: 13%, 233 Points neededLevel up: 13%, 233 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Nov 2005

Posts: 29

Danecookie is on a distinguished road
 
 
i got newz from my hosting company that someone is tryin to DOS ATTACK my forums. Although nothing to worry abt they said.

Well, wth is all this shit? how to increase my own security other then server side security.?
Reply With Quote
Old 11-10-2005, 08:56 PM   #2

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
DDOS attacks are hard to prevent...What you need to do is find out if you can get IP information on the attackers - your host should be able to get this. You can ban those IP's in your cPanel, and better yet, ban the sub-nets if you see a pattern. Your host should also do the same for the server. Odds are, that won't solve the issue anyways...any decent hacker will know how to get around an IP ban.

Whatever you do, just be sure to backup your forums often.

Try not to create any enemies, install any necessary security patches, backup your files, and just let those left attack you...there really isn't a whole lot you can do in many circumstances.

If you have more details about this specific situation (who is doing it, why they are, how they are, etc.), somebody might be able to help you out more. But just saying "somebody is attacking me, ahhh!! how do i stop them?" won't get you very far.
__________________
...some super-sweet signature
Reply With Quote
Old 11-10-2005, 09:35 PM   #3

LarryB's Avatar

Title: AF Lead Developer

Points: 6,450, Level: 23Points: 6,450, Level: 23Points: 6,450, Level: 23
Level up: 24%, 100 Points neededLevel up: 24%, 100 Points neededLevel up: 24%, 100 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 1,186

Location: OHIO, US

LarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud of
Send a message via MSN to LarryB  
 
unfortunately banning the ip's @ the server will do very little against even a novice ddos. The ddos floods the system with invalid data with the purpose of clogging the connection to the server. The only effective way to stop a good sized ddos is to have your provider filter the data coming from those ips off the line further up the line where the line is much bigger so that it does not clog the smaller network lines that go to ur machine.
__________________
Do not post your PF private key in public.

Did I help you with this post? If so, pls click the rep button or send money.
Reply With Quote
Old 11-11-2005, 02:48 AM   #4

Will's Avatar

Title: Forum Enthusiast

Points: 9,794, Level: 29Points: 9,794, Level: 29Points: 9,794, Level: 29
Level up: 30%, 156 Points neededLevel up: 30%, 156 Points neededLevel up: 30%, 156 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Oct 2005

Posts: 2,139

Location: Maryland, US

Will has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant future
Send a message via AIM to Will Send a message via MSN to Will  
 
do a backup of your site and then if they do reupload it do a backup every day....
__________________
Will Stumpf - TalkNikon
Submit your sites -> Quality Link Directory
Reply With Quote
Old 11-11-2005, 03:35 AM   #5

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
A DOS doesnt destroy any files...all it does it take the site/server down so that nobody can access it...so losing data is not a concern
__________________
...some super-sweet signature
Reply With Quote
Old 11-11-2005, 03:38 AM   #6

Will's Avatar

Title: Forum Enthusiast

Points: 9,794, Level: 29Points: 9,794, Level: 29Points: 9,794, Level: 29
Level up: 30%, 156 Points neededLevel up: 30%, 156 Points neededLevel up: 30%, 156 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Oct 2005

Posts: 2,139

Location: Maryland, US

Will has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant futureWill has a brilliant future
Send a message via AIM to Will Send a message via MSN to Will  
 
ohhhhhhhhh (lol i dont know much about that do i now???? [img]style_emoticons/<#EMO_DIR#>/laugh.gif[/img])

well that stinks for you hope they dont do it
__________________
Will Stumpf - TalkNikon
Submit your sites -> Quality Link Directory
Reply With Quote
Old 11-12-2005, 09:26 PM   #7

Title: Rookie

Points: 1,917, Level: 12Points: 1,917, Level: 12Points: 1,917, Level: 12
Level up: 13%, 233 Points neededLevel up: 13%, 233 Points neededLevel up: 13%, 233 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Nov 2005

Posts: 29

Danecookie is on a distinguished road
 
 
oh well, nothing happened as my hosting company said... but they said that u can face slow speed of ur site...
they will change the ip of my site ..

@ Cadence :
DOS attack cant destroy data of my site/forum? plz elaborate !
Reply With Quote
Old 11-12-2005, 11:42 PM   #8

LarryB's Avatar

Title: AF Lead Developer

Points: 6,450, Level: 23Points: 6,450, Level: 23Points: 6,450, Level: 23
Level up: 24%, 100 Points neededLevel up: 24%, 100 Points neededLevel up: 24%, 100 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 1,186

Location: OHIO, US

LarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud ofLarryB has much to be proud of
Send a message via MSN to LarryB  
 
Quote:
Originally Posted by LarryB @ Nov 10 2005, 03:35 PM) [post=7118
Quoted post[/post][/center]<div class='quotemain'>
The ddos floods the system with invalid data with the purpose of clogging the connection to the server. [/b]
__________________
Do not post your PF private key in public.

Did I help you with this post? If so, pls click the rep button or send money.
Reply With Quote
Old 12-07-2005, 04:15 AM   #9

Title: Member

Points: 1,850, Level: 11Points: 1,850, Level: 11Points: 1,850, Level: 11
Level up: 13%, 300 Points neededLevel up: 13%, 300 Points neededLevel up: 13%, 300 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Dec 2005

Posts: 58

Outlander is on a distinguished road
 
 
Have fought a couple of these off for people, as some one above said try not to make enemies.

Best method l found was via the .htaccess file in your root directory (remembering sub directory .htaccess files override). You can usually stall a DDOS attack effectively via that.
Reply With Quote
Old 12-07-2005, 04:38 AM   #10

Ryan's Avatar

Title: Administrator

Points: 47,649, Level: 67Points: 47,649, Level: 67Points: 47,649, Level: 67
Level up: 68%, 701 Points neededLevel up: 68%, 701 Points neededLevel up: 68%, 701 Points needed
Activity: 0%Activity: 0%Activity: 0%

Join Date: Sep 2005

Posts: 10,246

Location: Athens, GA

Ryan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond reputeRyan has a reputation beyond repute
 
 
Quote:
Originally Posted by Outlander
Best method l found was via the .htaccess file in your root directory (remembering sub directory .htaccess files override). You can usually stall a DDOS attack effectively via that.
Care to elaborate on how?
__________________
...some super-sweet signature
Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

 
Posting Rules

Similar Threads
Thread Thread Starter Forum Replies Last Post
Unwritten Rules of Forums Ryan Handling Problem Members 3 08-17-2008 03:17 AM
Extremely Angry and Depressed Rocket 442 Security and Legal Issues 12 01-09-2008 11:02 PM
May 2006 - The Nextel Forums Ryan 2006 Winners Archive 0 06-01-2006 06:00 AM
Snitz Forums 2000 miner Software 2 09-08-2005 01:19 PM

AdminFusion

All times are GMT +1. The time now is 02:58 PM. Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0 © 2005-2008 AdminFusion - All Rights Reserved



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50