iEntry 10th Anniversary RSS Archive

IT Management Begins With Security
SecurityProNews > Insider Reports > Insider > TypePad Hit By DDoS Aimed At Blue Frog
Search:
[ insider_reports_insider ]

TypePad Hit By DDoS Aimed At Blue Frog



David Utter
Staff Writer
2006-05-04

SecurityProNews: Insider Reports Insider Reports RSS Feed


When Blue Frog's creator Blue Security redirected traffic from its URL to the blog it maintains on the TypePad service, the distributed denial of service attack aimed at BlueSecurity then affected TypePad.

TypePad Hit By DDoS Aimed At Blue Frog
TypePad Hit By DDoS Aimed At Blue Frog

The Blue Frog fight with a Russian spammer claimed an innocent bystander. TypePad and other sites operated by Six Apart came under attack from a sophisticated DDoS, the company posted on its blog.

Michael Sippey wrote in that entry how Six Apart was being affected by the DDoS, which began on May 2nd:

Since approximately 4:00 pm Pacific Daylight Time, Six Apart has been the victim of a sophisticated distributed denial of service attack. This has affected all of Six Apart's sites, causing intermittent and limited availability for TypePad, LiveJournal, TypeKey, sixapart.com, movabletype.org and movabletype.com.

After nearly twelve hours, Six Apart finally sounded the "all clear" and set their network status back to green. However, it appears Six Apart never should have been victimized in the first place.

In a lengthy blog post, Jason Levine wrote that Six Apart's woes could be laid at the feet of Blue Security, the Israeli firm that developed the Blue Frog anti-spam tool.

Blue Frog floods spammers with opt-out or complaint messages when they email users who are members of the Blue Frog Registry. One particularly persistent Russian spammer has been retaliating against the company with those DoS attacks; in fact, Blue Security is completely unavailable as of press time.

Levine thinks Blue Security was responsible for the whole mess. So why did this happen? Levine explained on his blog:

Because according to a post on the North American Network Operators Group mailing list, at some point yesterday the people at Blue Security decided that the best way to deal with the attack was to point the hostname www.bluesecurity.com to their TypePad-hosted weblog, bluesecurity.blogs.com. This effectively meant that the target of the attack shifted off of Blue Security's own network and onto that of Six Apart, and did so as the direct result of a decision made by the folks at Blue Security.

Judging from the outage, it's unlikely that Blue Security gave them any warning...


---
Tags: , ,

Add to | DiggThis | Yahoo! My Web | Furl Bookmark WebProNews:





About the Author:
David Utter is a business and technology writer for SecurityProNews and WebProNews.

More insider_reports_insider Articles

SecurityProNews: Insider Reports Insider Reports RSS Feed


Get Your Site Submitted for Free in the World's Largest B2B Directory!

Email Address:
* URL:
*
*Indicates Mandatory Field

Terms & Conditions

iEntry Featured Services: Jayde Member Services | Forums | Freeware | Advertise with Us

Virus Warnings

Subscribe to
SecurityProNews FREE!



[ more newsletters ]

article resources
Search Articles:
[advanced search]

WebProWorld.com
Get in-touch with industry experts and leaders
Post your site for review by expert and peers
Ask Security, IT, Development and Design questions

Free Membership: Join Now!

Visit WebProWorld.com

Titan Quest Forum
The #1 Titan Quest forum
Halo 3 Forum
The best Halo, Halo 2, Halo 3 forum
Nintendo Wii
Nintendo Wii news and views
Mac Software
The best in OS X freeware
Graphics Forum
Your source for graphic tutorials
SecurityProNews.com | Breaking eBusiness News Get Your IT Questions Answered - Click Here SecurityProNews News Feeds