Sunday, February 11, 2007

Botwars and Press Interviews...

It seems that two of the largest Botnet gangs maybe fighting each other. The P2P Botnet created by Storm-Worm variants seems to have been used to launch a Distributed Denial-of-Service attack against several of the domains used by the Warezov/Medbot gang. It really reminds me at the viruswar between the Bagle and Netsky gang back in 2004. Coupled with this supposed attack it seems that the websites of several Anti SPAM organisations have been targeted in the attacks. Joe Stewart over at SecureWorks has posted an analysis of the attacks here. There has also be some speculation that these attacks are related to the attacks that have been reported against the DNS root servers. Associated Press reported that the attacks overwhelmed at least 3 of the 13 root DNS servers on Tuesday. Stats provided here by DNS monitoring at RIPE seem to indicate that these attacks could have disrupted at least 2 of the root DNS servers. It is still completely unsure that these Botnets has something to do with these attacks. I've been interviewed by the Belgian press last Thursday about those attacks. You can find more about it on my press page. It's still unbelievable that after working together with the press for several years now that the name of the company I work for, 'NOXS', seems to be mispelled as 'NOCX' by one TV broadcast station.