移动互联网对 DDOS 攻防带来的新挑战
description
Transcript of 移动互联网对 DDOS 攻防带来的新挑战
1
DDOS20135DDOS
VLC DDoS Logstalgia
3Mobile
2012PC
4
20125
googleandorid botnet1790000android
AppsDDoS
Apps
6Android.DDoS.1.origin
12Doctor WebAndroid.DDoS.1.originAndroidGoogle Play
Command and Control)
Doctor Web
7MDK
2012100
MDK
APP71532011
8AnDosid
AnDOSidDOS(http post,dDOS
McAfeeLow Orbit Ion Cannon(LOIC)DDoSAndroidAnonymous
AndroidAndroid DDoSAndroid
9 DDOSIDS/IPSACLIptablesSYN-cookieIDS IPSDDOSIDSDDOSIDSDDoSIDS
ACLAccess Control List,ACLACLDDOShttp
Iptablesiptablesip
Syn-cookie:SYN CookieTCPSYN FloodTCPTCP SYNTCP SYN+ACKSYNcookieTCP ACKTCPcookieTCP ACKTCP
10 DDOSJSCDNWAFCDNCDNcdnddos
WAFWeb Application FirewallwafddosIDS iPS0dayNginx
ipip
11DDOS
ddospc
ddos12IPISPIP
ddosipddosipipip
13JSnative app
APPNative APP
ddosjsNativeappjsjs14ddosISPIDCDDoS
google apple microsoft
androidgoogle
15
cookie
IPGeo IP80 / 20
Ddos
ddosddos(0day)
ddosddos
native apphttpcookiecookie
ipip802080%20%ipip16
THE END
Thanks!
Collect & Filter == Detect & Challenge ===Learn & Fight back17