Yintoni ukuhlaselwa kweDDoS?

AmaTrojans aqhele ukusetyenziswa ukuhlasela ukuhlaselwa kwe-Distributed Denial of Service (DDoS) kwiinkqubo ezijoliswe kuzo, kodwa yintoni nje ukuhlaselwa kweDDoS kwaye zenziwa njani?

Kwinqanaba eliphambili, ukuhlaselwa kweDenal Distention of Service (DDoS) kuhlalutya inkqubo yenkcazelo ngedatha, njengokuba impendulo evela kwinkqubo ekujoliswe kuyo iyancipha okanye imisiwe ngokupheleleyo. Ukuze udale inani elifunekayo lezithuthi, unxibelelwano lwe-zombie okanye iikhomputha ze-bot zisoloko zisetyenziswa.

I-Zombies okanye i-botnets yiikhomputha eziye zaphazamiseka ngabahlaseli, ngokubanzi ngokusetyenziswa kweTrojans, ezivumela ukuba iinkqubo ezicwangcisiweyo zilawulwe kude. Ngokuqokelela, ezi nkqubo zilawulwa ukudala ukuhamba kweendlela eziphambili ukudala ukuhlaselwa kweDDoS.

Ukusetyenziswa kwezi bhotile kudla ngokuthengiswa kwaye kuthengiswa phakathi kwabahlaseli, ngoko inkqubo eyancitshiswayo ingaba phantsi kolawulo lwezigwenxa ezininzi - nganye inenjongo ehlukeneyo engqondweni. Abanye abahlaseli bangasebenzisa i-botnet njenge-spam-relay, abanye basebenze njengesiza sokukhuphela kwikhowudi enobungozi, abanye babamba imicikilisho yokuphanga, kunye nabanye ekuhlaselweni kweDDoS ngasentla.

Amasu amaninzi angasetyenziselwa ukuququzelela ukuhlaselwa kweNdawo yokuLawulwa kweeNkonzo. Ezi zibini eziqhelekileyo zi-HTTP GET izicelo kunye ne-SYN Floods. Enye yeempawu ezibalaseleyo ze-HTTP ukuhlaselwa kwe-GET ivela kwi-MyDoom inyungu, ejolise kwiwebhusayithi ye-SCO.com. Ukuhlaselwa kwe-GET isebenza njengoko igama layo libonisa - lithumela isicelo sephepha elithile (ngokuqhelekileyo eliphepha lasekhaya) kwiseva ekujoliswe kuyo. Kwimeko yesikhumbuzo se- MyDoom , izicelo ezingama-64 zithunyelwa rhoqo kwisibini kwiprogram nganye. Ngamawaka amawaka eekhompyutheni eziqikelelwa ukuba unesifo yi-MyDoom, ukuhlaselwa ngokukhawuleza kwabonakalise kakhulu kwi-SCO.com, ukukhwaza ngaphandle kweentsuku eziliqela.

I-SYN Umkhukula ngokuyisiseko ukuxhamla ngesandla. Ukunxibelelana nge-intanethi kusetyenziswe ukuxhaphaza kweendlela ezintathu. Umthengi oqalayo uqala nge-SYN, umncedisi uyaphendula nge-SYN-ACK, kwaye umthengi kufuneka aphendule nge-ACK. Ukusebenzisa iidilesi ze-IP ezikhuselekile, umhlaseli uthumela i-SYN ekhokelela kwi-SYN-ACK ithunyelwa kwidilesi engeyiyo yokucela (kwaye kaninzi engekho). Umncedisi ulinda ukuba impendulo ye-ACK ayifanele. Xa inani elikhulu lala maphephathi e-SYN aphetshiwe athunyelwe ekujoliswe kuyo, izixhobo zeseva ziphelile kwaye umncedisi uyangena kwi-SYN Flood DDoS.

Ezinye iintlobo zeentlobo zokuhlaselwa kweDDoS zingasungulwa, kubandakanywa nezihlaselo ze-UDP, izikhukhula ze-ICMP kunye nePing of Death. Ukufumana iinkcukacha ezongezelelweyo malunga neentlobo ze-DDoS ukuhlaselwa, tyelela iLebhanki yokuLawula iNxibelelwano ePhambili (ANML) kwaye ubuye ubuyekeze iRadio Distributed Denial of Service Attacks (DDoS) Izibonelelo.

Bona kwakhona: Ngaba i-PC yakho i-zombie?