DDOS explained

FYI,

DDOS is a distrubted denial of service attack. It has NOTHING to do with security or lack thereof.

The way a DDOS works is it targets servers that are listening on certain ports for certain packets.

The attackers just send those packets to the server’s IP and port from thousands of co-opted devices like routers, pcs, cameras, etc.

It doesn’t require a login, a password, a user account, etc. They just spam garbage at the server on the IP and port it’s listening on.

Now sophisticated attacks make the server do more work by sending valid traffic the server is expecting and has to actually do something with. This causes more CPU cycles per request and these are known as amplification attacks. They amplify a small amount of incoming traffic to make the server waste a LOT of CPU cycles. These are very devastating.

Clever amplification attacks can take down ANY server that is on the web.

The only way to stop DDOS is by filtering the offending traffic near the sources of the traffic. This would be the thousands of machines all over the world that the attacker controls.

As you can see this is very difficult from a logistics perspective. You have to get internet providers from all over the world to filter the traffic. It’s very hard.

If you try and filter near the destination you will filter valid traffic with the bad traffic and deny users service anyway.

As you can see this is tricky and challenging and why any website can be taken down by attackers who know what they are doing and have the appropriately sized bot net.

No website / server can survive a targeted and expertly operated DDOS.

Nobody cares. People in here want to know why their Flask cost 500g and why they feel obligated to buy it every raid.

4 Likes

They do care they keep posting about DDOS attacks telling Blizzard to fix their security when that won’t do anything.

1 Like

You do understand you just told people HOW to DDoS… right?

Pretty sure that will get you in trouble here.

1 Like

That’s on Reddit r/classicwow. Here people want to know why their flask are 500g.

No I didn’t. You have to own thousands of PCs which no one here does or knows how to do.

Also once you use a bot-net to attack someone it’s basically worthless because the IPs get flagged eventually, so the big dogs don’t attack random people.

They call them and say, it would be a shame if your website went down during your big such and such occasion. If you pay us a lot of money, we promise it won’t. If you don’t pay us, well…you get the idea.

Further terrorism by the Black Lotus Cartel no doubt…

Nah it’s either the botters or the GDKPers.

you lost everyone that knows anything right there. This is patently false

2 Likes

You don’t need an account to DDOS man. LOL.

So why would security of an account matter?

Servers are listening to the public internet on specific ports. You can’t prevent people sending them traffic.

Earlier you said ‘security’ not ‘security of an account’

DDoS attacks hinder the ‘Availability’ of a server, which is a quintessential aspect of security; Confidentiality, Integrity, Availability

Anything security related doesn’t stop DDOS.

A server is by definition listening to the public internet on a port.

You can just spam it tons of traffic. It has to look at each one and figure out if it’s valid or not.

That takes time.

Enough traffic will overwhelm it.

Even if it is all invalid.

Because they banned GDKPs.

There are way less total raids per player (relative to if GDKPs were allowed) thus they can be way more picky in what they demand from raiders.

Everyone is incentivized to swipe since the best farm is banned and thus the people running bots are in full control of the economy.

1 Like

you don’t even know what security is lol

Feels good man

Explain how security will stop this?

Because I know for a fact it won’t.

Go on…

Only retail is caring beside some HC players.

And retail I’d have more people needing a rant to have that is new besides the usuals. And the DDOS maybe bricked a key or 2.

tomorrow will be thread 104833 on bad vault hits. they will forget HC soon.

It’s always a treat when someone who actually knows what they are talking about runs into the brick wall of “Blizz wtf do something” brigade on the forums.

1 Like

Someone stole my iPhone. How can Apple be so inept!?

1 Like

This probably belongs in the HC forum given recent events. DDOS attacks are a much smaller issue when you can just rez and at most you lose world buffs and have to pay a repair bill.