Thursday, May 24, 2007

Estonia under attack

Recently Estonia was targetted for cyberattacks;

That is why the world's richest countries and their military planners are now studying intensively the attacks on Estonia that started four weeks ago, amid that country's row with Russia about moving a Soviet-era war memorial...

Even at their crudest, the assaults broke new ground. For the first time, a state faced a frontal, anonymous attack that swamped the websites of banks, ministries, newspapers and broadcasters; that hobbled Estonia's efforts to make its case abroad. Previous bouts of cyberwarfare have been far more limited by comparison: probing another country's internet defences, rather as a reconnaissance plane tests air defences.

At full tilt, the onslaught on Estonia was also of a sophistication not seen before, with tactics shifting as weaknesses emerged. “Particular 'ports' of particular mission-critical computers in, for example, the telephone exchanges were targeted. Packet 'bombs' of hundreds of megabytes in size would be sent first to one address, then another,” says Linnar Viik, Estonia's top internet guru. Such efforts exceed the skills of individual activists or even organised crime; they require the co-operation of a state and a large telecoms firm, he says. The effects could have been life-threatening. The emergency number used to call ambulances and the fire service was out of action for more than an hour.

National security experts used to dealing with high-explosives and body counts find cyberwarfare a baffling new theatre of operations. In Estonia's case, “botnets” (swarms of computers hijacked by surreptitiously placed code, usually spread by spam) swamped sites by deluging them with bogus requests for information. Called a “distributed denial of service” (DDOS) attack, this at its peak involved more than 1m computers, creating traffic equivalent to 5,000 clicks per second on some targets. Some parts were highly co-ordinated—stopping precisely at midnight, for example. Frank Cilluffo, an expert formerly at the White House, says that the attack's signature suggests that more than one group was at work, with small-time hackers following the initial huge sorties.


Related;
What the attacks on Estonia have taught us about online combat
When Do Cyberattacks Become Acts of War?
NATO Nations Send Cyber Reinforcements to Estonia

No comments: