coined
|
|
April 30, 2011, 11:52:48 PM |
|
did the market just outgrow our little community very very quickly? a simple DDoS and 95% of bitcoin trades freeze, it is a good way to drive prices down, investors will see our amateur level operations and wait a while maybe its the wake up call we need. were not ready for the world to join in yet.
|
|
|
|
bitcoinex
|
|
May 01, 2011, 12:06:39 AM |
|
did the market just outgrow our little community very very quickly? a simple DDoS and 95% of bitcoin trades freeze, it is a good way to drive prices down, investors will see our amateur level operations and wait a while maybe its the wake up call we need. were not ready for the world to join in yet. 99.9% really decentralized Bitcoin are highly centralized to mtgox!11
|
New bitcoin lottery: probiwon.com- Moжeт, ты eщё и в Heвидимyю Pyкy Pынкa вepyeшь? - Зaчeм жe вepoвaть в тo, чтo мoжнo нaблюдaть нeпocpeдcтвeннo?
|
|
|
Steve
|
|
May 01, 2011, 12:33:40 AM |
|
MtGox' version of trading curbs
|
|
|
|
fbit
Newbie
Offline
Activity: 4
Merit: 0
|
|
May 01, 2011, 12:36:03 AM |
|
=( just took an evening off to play around with the API and get a trading bot started. Now I got some basic functionalty done and the page goes down.
|
|
|
|
eleuthria
Legendary
Offline
Activity: 1750
Merit: 1007
|
|
May 01, 2011, 12:42:09 AM |
|
I was implementing a BitCoin currency on my store using the MtGox API as it went down as well. Was getting nice results too, was about to work on the final checkout page . Guess it'll have to wait for a May 1st update. At least people can still use US$ .
|
RIP BTC Guild, April 2011 - June 2015
|
|
|
Ulysses
Newbie
Offline
Activity: 31
Merit: 0
|
|
May 01, 2011, 12:53:19 AM |
|
Most likely it's not a dos, mtgox was featured on hacker news frontpage.
|
|
|
|
The Script
|
|
May 01, 2011, 12:55:42 AM |
|
I'm sure magical tux is working on it, so this is me subscribing to the thread so I get notified as things progress.
|
|
|
|
qed
|
|
May 01, 2011, 01:12:42 AM |
|
Most likely it's not a dos, mtgox was featured on hacker news frontpage.
Source?
|
|
|
|
bitcoinBull
Legendary
Offline
Activity: 826
Merit: 1001
rippleFanatic
|
|
May 01, 2011, 01:15:39 AM |
|
MagicalTux is on #bitcoin-otc discussing the DDoS right now: [21:08] <+MagicalTux> in 0.05 seconds, I'm getting 313 connection attempts [21:09] <+MagicalTux> that's ~6200 connections/second [21:10] <+MagicalTux> I'll be storing bits of flood from tcpdump, and blocking those http://webchat.freenode.net/?channels=#bitcoin-otc
|
College of Bucking Bulls Knowledge
|
|
|
MagicalTux
VIP
Hero Member
Offline
Activity: 608
Merit: 501
-
|
|
May 01, 2011, 01:19:06 AM |
|
Reporting here! What I got so far:
Getting ~6000 SYN/sec (standing at ~1.7MB/s) from various sources, mainly vietnam. Those are attempts to connect on port 443 to "poke" various urls, including / and /users/login.
There are different patterns, suggesting either there are various version of the "drones" out there trying to attack mtgox, or that different people are attacking.
The attacks seems specifically targetted at mtgox (use of the login url, for example), and contain a vast majority of russian bits (use of random russian referers, use of russian user agents, etc).
The strategy:
I'm trying to get some patterns out there I can block out from the server. Traffic load is still lower than server uplink, which should allow to block that without too much troubles. The first thing I'll be doing is to block the ips I've recorded so far, and write a little C program with libpcap to analyze the network traffic and block ips that seem obviously doing something bad. I'll also reduce the max open tcp connections per ip to limit the load caused by a single IP.
|
|
|
|
|
qed
|
|
May 01, 2011, 01:33:24 AM |
|
I miss the connection, how is hacker news related with any hackers crew?
|
|
|
|
bitcoinBull
Legendary
Offline
Activity: 826
Merit: 1001
rippleFanatic
|
|
May 01, 2011, 01:35:31 AM |
|
I miss the connection, how is hacker news related with any hackers crew? Its not. But HN is a high-profile site which can drive large traffic. However, the HN traffic still would not be enough to cause the MtGox outage. As MagicalTux explained above, apart from legitimate traffic, they are under a DDoS attack.
|
College of Bucking Bulls Knowledge
|
|
|
cypherdoc
Legendary
Offline
Activity: 1764
Merit: 1002
|
|
May 01, 2011, 01:42:59 AM |
|
for us non hackers, is it possible to sustain a DDoS attack indefinitely and if so can mtgox restore functionality?
|
|
|
|
eof
|
|
May 01, 2011, 01:47:50 AM |
|
for us non hackers, is it possible to sustain a DDoS attack indefinitely and if so can mtgox restore functionality?
in theory; but he will likely be able to find patterns in the traffic and/or block the right IPs to restore functionality. depends on how smart a ddos and how much resources they have
|
|
|
|
cypherdoc
Legendary
Offline
Activity: 1764
Merit: 1002
|
|
May 01, 2011, 01:50:27 AM |
|
for us non hackers, is it possible to sustain a DDoS attack indefinitely and if so can mtgox restore functionality?
in theory; but he will likely be able to find patterns in the traffic and/or block the right IPs to restore functionality. depends on how smart a ddos and how much resources they have has a gov't ever launched a DDoS?
|
|
|
|
mewantsbitcoins
|
|
May 01, 2011, 01:54:12 AM |
|
MagicalTux, if we mirrored your site, maybe you could do some load balancing?
|
|
|
|
bitcoinex
|
|
May 01, 2011, 02:01:58 AM |
|
The attacks seems specifically targetted at mtgox (use of the login url, for example), and contain a vast majority of russian bits (use of random russian referers, use of russian user agents, etc).
And now I understand you
|
New bitcoin lottery: probiwon.com- Moжeт, ты eщё и в Heвидимyю Pyкy Pынкa вepyeшь? - Зaчeм жe вepoвaть в тo, чтo мoжнo нaблюдaть нeпocpeдcтвeннo?
|
|
|
qed
|
|
May 01, 2011, 02:04:41 AM |
|
for us non hackers, is it possible to sustain a DDoS attack indefinitely and if so can mtgox restore functionality?
Nope.
|
|
|
|
bitcoinex
|
|
May 01, 2011, 02:05:37 AM |
|
for us non hackers, is it possible to sustain a DDoS attack indefinitely and if so can mtgox restore functionality?
Nope. An ddos could be a cover for a hack.
|
New bitcoin lottery: probiwon.com- Moжeт, ты eщё и в Heвидимyю Pyкy Pынкa вepyeшь? - Зaчeм жe вepoвaть в тo, чтo мoжнo нaблюдaть нeпocpeдcтвeннo?
|
|
|
|