The foolishness of running an opensource home brew server.

For everything that's not in any way related to PureBasic. General chat etc...
CadeX
Enthusiast
Enthusiast
Posts: 124
Joined: Mon Oct 02, 2006 2:56 pm
Location: Australia
Contact:

The foolishness of running an opensource home brew server.

Post by CadeX »

My entire network has been under a massive DDOS attack for the last couple of days, i got sick of hoping the guy would just stop or legal forces to take action, but he isn't stopping until he gets what he wants.. Which is my entire networks database.

Funnily enough, i took this matter into my own hands since legal action said they could not do anything. Since my server's were logging the IP address, i did website searchs, and port scans on his ip.

I found a website of his, he runs 3 servers, all open-source, the style the person has been writting the servers in was quite identical... So, I noticed a flaw, in all of them... The same flaw in all 3 was somewhere in there... So, i reversed the attack by using my backup channel on my network. I sent him a reply to the email he left me... He has made corrections in his code, but he still hasn't found the flaw. I seised the reverse-attack after 1 hour. Since then no attacks, but i did get a reply saying it wont end here.

Funny, huh?

Comments, Idea's, Feedback accepted.
Pro-Gamer, Programmer, Pro-Grammer
thamarok
Enthusiast
Enthusiast
Posts: 282
Joined: Wed Sep 06, 2006 1:37 pm

Post by thamarok »

You did what that loser deserves.
But, I would recommend you if your server isn't that important, take it down for a couple of days. (The same happened to me, I took my server down for a week and after it was hosted no attacks so far and it is 5 months then the last attack)

One thing that I don't understand is, that even I couldn't do any legal actions.. :evil:
dracflamloc
Addict
Addict
Posts: 1648
Joined: Mon Sep 20, 2004 3:52 pm
Contact:

Post by dracflamloc »

I believe the true foolishness is in believing that non-open source homebrew servers are any better...
CadeX
Enthusiast
Enthusiast
Posts: 124
Joined: Mon Oct 02, 2006 2:56 pm
Location: Australia
Contact:

Post by CadeX »

Since the person had a sourcecode of his servers on his website, i didn't even have to bother investigating how his servers worked.. Though you do raise a valid point, it just saved me ALOT of time by looking at his source(s) instead.
Pro-Gamer, Programmer, Pro-Grammer
Killswitch
Enthusiast
Enthusiast
Posts: 731
Joined: Wed Apr 21, 2004 7:12 pm

Post by Killswitch »

It's this sort of thing which worries me about open-source sotware - all of a programs faults and weaknesses are there for people to find and exploit. At least with proprierty software you have to work your arse off to find some chink in the softwares armour. Then again, there is the argument that open-source programs can get patched quicker. I don't know, I'm ranting :)

Anyway, nice one on giving this guy a taste of his own medicine!
~I see one problem with your reasoning: the fact is thats not a chicken~
dracflamloc
Addict
Addict
Posts: 1648
Joined: Mon Sep 20, 2004 3:52 pm
Contact:

Post by dracflamloc »

The second the attack occurred if this guy was smart he'd take down the server, fix the bug with a quick hack, then put the server back up. If he was running a closed server he would either have to just let the attack happen or he would have to take the server down completely.
CadeX
Enthusiast
Enthusiast
Posts: 124
Joined: Mon Oct 02, 2006 2:56 pm
Location: Australia
Contact:

Post by CadeX »

But he hasnt... So, i'm waiting for the next attack if this isn't the end of it. I've firewalled his IP range, not sure if thats whats stopping him.
Pro-Gamer, Programmer, Pro-Grammer
dracflamloc
Addict
Addict
Posts: 1648
Joined: Mon Sep 20, 2004 3:52 pm
Contact:

Post by dracflamloc »

Could be, though most likely he'll figure that out and get a new IP.

Good job though =)
User avatar
Joakim Christiansen
Addict
Addict
Posts: 2452
Joined: Wed Dec 22, 2004 4:12 pm
Location: Norway
Contact:

Post by Joakim Christiansen »

Haha, funnny :lol:
I like logic, hence I dislike humans but love computers.
Shannara
Addict
Addict
Posts: 1808
Joined: Thu Oct 30, 2003 11:19 pm
Location: Emerald Cove, Unformed

Post by Shannara »

If you were in the usa, or he is in the usa, and you can convince the fbi that he has caused 5,000 or more worth of damage to your network, they will definately do something about it.

If you can prove that much damange, good luck!
CadeX
Enthusiast
Enthusiast
Posts: 124
Joined: Mon Oct 02, 2006 2:56 pm
Location: Australia
Contact:

Post by CadeX »

He did absolutely no damage money wise, but he did a little reputation wise... a few people were upset when they couldn't use the services i offered. I think the reputation has been restored though. Still waiting for the next attack.
Pro-Gamer, Programmer, Pro-Grammer
Post Reply