NZ Herald
  • Home
  • Latest news
  • Video
  • New Zealand
  • Sport
  • World
  • Business
  • Entertainment
  • Podcasts
  • Quizzes
  • Opinion
  • Lifestyle
  • Travel
  • Viva
  • Weather forecasts

Subscriptions

  • Herald Premium
  • Viva Premium
  • The Listener
  • BusinessDesk

Sections

  • Latest news
  • New Zealand
    • All New Zealand
    • Crime
    • Politics
    • Education
    • Open Justice
    • Scam Update
    • The Great NZ Road Trip
  • On The Up
  • World
    • All World
    • Australia
    • Asia
    • UK
    • United States
    • Middle East
    • Europe
    • Pacific
  • Business
    • All Business
    • MarketsSharesCurrencyCommoditiesStock TakesCrypto
    • Markets with Madison
    • Media Insider
    • Business analysis
    • Personal financeKiwiSaverInterest ratesTaxInvestment
    • EconomyInflationGDPOfficial cash rateEmployment
    • Small business
    • Business reportsMood of the BoardroomProject AucklandSustainable business and financeCapital markets reportAgribusiness reportInfrastructure reportDynamic business
    • Deloitte Top 200 Awards
    • CompaniesAged CareAgribusinessAirlinesBanking and financeConstructionEnergyFreight and logisticsHealthcareManufacturingMedia and MarketingRetailTelecommunicationsTourism
  • Opinion
    • All Opinion
    • Analysis
    • Editorials
    • Business analysis
    • Premium opinion
    • Letters to the editor
  • Sport
    • All Sport
    • OlympicsParalympics
    • RugbySuper RugbyNPCAll BlacksBlack FernsRugby sevensSchool rugby
    • CricketBlack CapsWhite Ferns
    • Racing
    • NetballSilver Ferns
    • LeagueWarriorsNRL
    • FootballWellington PhoenixAuckland FCAll WhitesFootball FernsEnglish Premier League
    • GolfNZ Open
    • MotorsportFormula 1
    • Boxing
    • UFC
    • BasketballNBABreakersTall BlacksTall Ferns
    • Tennis
    • Cycling
    • Athletics
    • SailingAmerica's CupSailGP
    • Rowing
  • Lifestyle
    • All Lifestyle
    • Viva - Food, fashion & beauty
    • Society Insider
    • Royals
    • Sex & relationships
    • Food & drinkRecipesRecipe collectionsRestaurant reviewsRestaurant bookings
    • Health & wellbeing
    • Fashion & beauty
    • Pets & animals
    • The Selection - Shop the trendsShop fashionShop beautyShop entertainmentShop giftsShop home & living
    • Milford's Investing Place
  • Entertainment
    • All Entertainment
    • TV
    • MoviesMovie reviews
    • MusicMusic reviews
    • BooksBook reviews
    • Culture
    • ReviewsBook reviewsMovie reviewsMusic reviewsRestaurant reviews
  • Travel
    • All Travel
    • News
    • New ZealandNorthlandAucklandWellingtonCanterburyOtago / QueenstownNelson-TasmanBest NZ beaches
    • International travelAustraliaPacific IslandsEuropeUKUSAAfricaAsia
    • Rail holidays
    • Cruise holidays
    • Ski holidays
    • Luxury travel
    • Adventure travel
  • Kāhu Māori news
  • Environment
    • All Environment
    • Our Green Future
  • Talanoa Pacific news
  • Property
    • All Property
    • Property Insider
    • Interest rates tracker
    • Residential property listings
    • Commercial property listings
  • Health
  • Technology
    • All Technology
    • AI
    • Social media
  • Rural
    • All Rural
    • Dairy farming
    • Sheep & beef farming
    • Horticulture
    • Animal health
    • Rural business
    • Rural life
    • Rural technology
    • Opinion
    • Audio & podcasts
  • Weather forecasts
    • All Weather forecasts
    • Kaitaia
    • Whangārei
    • Dargaville
    • Auckland
    • Thames
    • Tauranga
    • Hamilton
    • Whakatāne
    • Rotorua
    • Tokoroa
    • Te Kuiti
    • Taumaranui
    • Taupō
    • Gisborne
    • New Plymouth
    • Napier
    • Hastings
    • Dannevirke
    • Whanganui
    • Palmerston North
    • Levin
    • Paraparaumu
    • Masterton
    • Wellington
    • Motueka
    • Nelson
    • Blenheim
    • Westport
    • Reefton
    • Kaikōura
    • Greymouth
    • Hokitika
    • Christchurch
    • Ashburton
    • Timaru
    • Wānaka
    • Oamaru
    • Queenstown
    • Dunedin
    • Gore
    • Invercargill
  • Meet the journalists
  • Promotions & competitions
  • OneRoof property listings
  • Driven car news

Puzzles & Quizzes

  • Puzzles
    • All Puzzles
    • Sudoku
    • Code Cracker
    • Crosswords
    • Cryptic crossword
    • Wordsearch
  • Quizzes
    • All Quizzes
    • Morning quiz
    • Afternoon quiz
    • Sports quiz

Regions

  • Northland
    • All Northland
    • Far North
    • Kaitaia
    • Kerikeri
    • Kaikohe
    • Bay of Islands
    • Whangarei
    • Dargaville
    • Kaipara
    • Mangawhai
  • Auckland
  • Waikato
    • All Waikato
    • Hamilton
    • Coromandel & Hauraki
    • Matamata & Piako
    • Cambridge
    • Te Awamutu
    • Tokoroa & South Waikato
    • Taupō & Tūrangi
  • Bay of Plenty
    • All Bay of Plenty
    • Katikati
    • Tauranga
    • Mount Maunganui
    • Pāpāmoa
    • Te Puke
    • Whakatāne
  • Rotorua
  • Hawke's Bay
    • All Hawke's Bay
    • Napier
    • Hastings
    • Havelock North
    • Central Hawke's Bay
    • Wairoa
  • Taranaki
    • All Taranaki
    • Stratford
    • New Plymouth
    • Hāwera
  • Manawatū - Whanganui
    • All Manawatū - Whanganui
    • Whanganui
    • Palmerston North
    • Manawatū
    • Tararua
    • Horowhenua
  • Wellington
    • All Wellington
    • Kapiti
    • Wairarapa
    • Upper Hutt
    • Lower Hutt
  • Nelson & Tasman
    • All Nelson & Tasman
    • Motueka
    • Nelson
    • Tasman
  • Marlborough
  • West Coast
  • Canterbury
    • All Canterbury
    • Kaikōura
    • Christchurch
    • Ashburton
    • Timaru
  • Otago
    • All Otago
    • Oamaru
    • Dunedin
    • Balclutha
    • Alexandra
    • Queenstown
    • Wanaka
  • Southland
    • All Southland
    • Invercargill
    • Gore
    • Stewart Island
  • Gisborne

Media

  • Video
    • All Video
    • NZ news video
    • Business news video
    • Politics news video
    • Sport video
    • World news video
    • Lifestyle video
    • Entertainment video
    • Travel video
    • Markets with Madison
    • Kea Kids news
  • Podcasts
    • All Podcasts
    • The Front Page
    • On the Tiles
    • Ask me Anything
    • The Little Things
    • Cooking the Books
  • Cartoons
  • Photo galleries
  • Today's Paper - E-editions
  • Photo sales
  • Classifieds

NZME Network

  • Advertise with NZME
  • OneRoof
  • Driven Car Guide
  • BusinessDesk
  • Newstalk ZB
  • What the Actual
  • Sunlive
  • ZM
  • The Hits
  • Coast
  • Radio Hauraki
  • The Alternative Commentary Collective
  • Gold
  • Flava
  • iHeart Radio
  • Hokonui
  • Radio Wanaka
  • iHeartCountry New Zealand
  • Restaurant Hub
  • NZME Events

SubscribeSign In
Advertisement
Advertise with NZME.
Home / Business

Floored by attack of the bots

29 May, 2003 08:31 AM5 mins to read

Subscribe to listen

Access to Herald Premium articles require a Premium subscription. Subscribe now to listen.
Already a subscriber?  Sign in here

Listening to articles is free for open-access content—explore other articles or learn more about text-to-speech.
‌
Save

    Share this article

By PETER GRIFFIN

The last time we caught up with shadowy web figure Captain Bob, he was making a tidy sum running a global "spam" mail operation over the internet. But since then, the internet has come back to bite him.

Captain Bob, or Steven Taylor as he is known in the real world, has spent the past few weeks getting to know how a distributed denial of service (DDOS) attack occurs. That's because Taylor and the small, Auckland-based internet provider he was using to host his server became the subject of a DDOS attack after Taylor "annoyed" a fellow web user operating from the United States.

The result? About 25 per cent of the internet provider's customers, including Taylor, saw their internet connectivity grind to a halt.

Despite the personal attack, Taylor is philosophical, and now quite well-informed about DDOS - where an attacker floods a victim's computer with vast volumes of data traffic, using an army of compromised computers that have been mustered via the internet.

"It's something that is unavoidable, anyone is prone to it and the worst thing is there is no good way of stopping it," he says.

The genesis of DDOS attacks, in all their varying forms, lies in weak computer security and digital software agents known as "bots".

The Machines are insecure for a variety of reasons: lack of firewall security, missing software patches, outdated anti-virus programs and complacent IT departments.

As Taylor demonstrated to the Herald, insecure computers are searched for and detected on the internet easily. A few minutes of scanning can pick up dozens of "open" machines.

Taylor was searching IP (internet protocol) addresses associated with Asian countries - China, Korea and Japan in particular. The high use of pirated software in those countries means there are often wide security holes.

The first job of the attacker is to create or obtain a bot - something anyone with basic knowledge of writing computer code or access to a search engine can do.

They can be spread with the aid of Trojan viruses such as SUB7, worms and other exploits.

"A lot of the bots have the ability to auto-spread. Once you infect one machine, it will go and infect another six and each of those will infect another six and on it goes," says Taylor.

Some of the Trojans granting access to computers are spread through file-sharing networks such as KaZaA, which is frequented by millions of copyright-flouting music downloaders.

How many bots are needed?

"Maybe a few hundred bots to take down a medium-sized website - 20,000 bots is enough to take out anyone," says Taylor.

The next step is to launch the attack. Often IRC (internet relay chat) is used to communicate with the bots, commanding them to begin sending packets of data to the victim's machine repeatedly. The desired effect is network chaos at the victim's end of the web.

For Taylor, used to changing ISPs at the drop of a hat, the disruption was minimal. But for the thousands of businesses that bear the brunt of DDOS attacks each week, the results can be disastrous.

Yahoo, eBay, MSN and several large US government departments have all at one time struggled to prop their networks up through DDOS attacks.

Quite often their networks, at the most visible their web pages, are taken offline, potentially costing companies, especially those with e-commerce operations, large amounts of money in lost business.

Internet security expert Steve Gibson knows better than most the shock of disappearing from the internet in the blink of an eye.

"Nothing more than the whim of a 13-year old hacker is required to knock any user, site, or server right off the internet," says Gibson on his website, which tells the story of being brought down by a DDOS attack and then attempting to analyse the attack and trace it back to its source (grc.com/dos/grcdos.htm).

"We were drowning in a flood of malicious traffic and valid traffic was unable to compete with the torrent," says Gibson, who determined that GRC had been attacked by 474 insecure Windows PCs sending billions of unwanted packets of data.

And as Gibson found out when he caught up with "Wicked", the DDOS mastermind who had targeted him, the motive for attacks can be basic and personal.

"The reason me and my 2 other contributers [sic] do this is because in a previous post you call us 'script kiddies'," an insulted Wicked later confessed.

Stopping the chaos involves tracing each attack back to the network or computer from where it came. The organisation is then contacted and asked to disable or clean the offending system. Crossing borders, time zones, cultures and languages can be difficult and time-consuming. Attackers often send fake IP addresses, masking the true origins of the attack. The only true way to end the nightmare is to disconnect from the web.

Software vendors have come up with ways of thwarting the attacks such as limiting the number of connections that can be made from one IP address before it is blocked.

The headache is separating authentic traffic from DDOS data flows.

"It comes down to security versus usability. Usually the latter will suffer," says Taylor.

For those doing business online, the threat of DDOS attacks are ever-present.

The director of Taylor's internet provider, which did not want to be named, said the attack had been "reasonably substantial", but good network redundancy had lessened the impact.

"We're one of the few ISPs that have three or four different bandwidth providers. It gives us the ability to weather the storm."

Not as fashionable as they used to be, DDOS attacks seem to come and go - and will become more dangerous as dependence on the web increases. As Taylor says, "with enough bots and enough bandwidth, anything is possible".

Advertisement
Advertise with NZME.
Advertisement
Advertise with NZME.
Save

    Share this article

Latest from Business

Premium
Media Insider

From the heartbreak of losing her husband at just 48, a couple's enduring media legacy

09 May 05:00 PM
Premium
Opinion

Fran O'Sullivan: Political games hinder vital superannuation reform

09 May 05:00 PM
Premium
Opinion

Mary Holm: Is there are pot of gold waiting for those who invest in non-bank deposits?

09 May 05:00 PM

“Not an invisible footprint”: Why technology supply chains need optimising

sponsored
Advertisement
Advertise with NZME.

Latest from Business

Premium
From the heartbreak of losing her husband at just 48, a couple's enduring media legacy

From the heartbreak of losing her husband at just 48, a couple's enduring media legacy

09 May 05:00 PM

'It allows me to focus on myself and the kids and figure out life without Allan.'

Premium
Fran O'Sullivan: Political games hinder vital superannuation reform

Fran O'Sullivan: Political games hinder vital superannuation reform

09 May 05:00 PM
Premium
Mary Holm: Is there are pot of gold waiting for those who invest in non-bank deposits?

Mary Holm: Is there are pot of gold waiting for those who invest in non-bank deposits?

09 May 05:00 PM
Premium
Noise ban, off-limit interviews: TVNZ's rules as RNZ moves in; Ad agencies take aim at global merger

Noise ban, off-limit interviews: TVNZ's rules as RNZ moves in; Ad agencies take aim at global merger

09 May 10:58 AM
Deposit scheme reduces risk, boosts trust – General Finance
sponsored

Deposit scheme reduces risk, boosts trust – General Finance

NZ Herald
  • About NZ Herald
  • Meet the journalists
  • Newsletters
  • Classifieds
  • Help & support
  • Contact us
  • House rules
  • Privacy Policy
  • Terms of use
  • Competition terms & conditions
  • Our use of AI
Subscriber Services
  • NZ Herald e-editions
  • Daily puzzles & quizzes
  • Manage your digital subscription
  • Manage your print subscription
  • Subscribe to the NZ Herald newspaper
  • Subscribe to Herald Premium
  • Gift a subscription
  • Subscriber FAQs
  • Subscription terms & conditions
  • Promotions and subscriber benefits
NZME Network
  • The New Zealand Herald
  • The Northland Age
  • The Northern Advocate
  • Waikato Herald
  • Bay of Plenty Times
  • Rotorua Daily Post
  • Hawke's Bay Today
  • Whanganui Chronicle
  • Viva
  • NZ Listener
  • What the Actual
  • Newstalk ZB
  • BusinessDesk
  • OneRoof
  • Driven CarGuide
  • iHeart Radio
  • Restaurant Hub
NZME
  • About NZME
  • NZME careers
  • Advertise with NZME
  • Digital self-service advertising
  • Book your classified ad
  • Photo sales
  • NZME Events
  • © Copyright 2025 NZME Publishing Limited
TOP