Slashdot Log In
Storm Dismantled at USENIX LEET Workshop
Posted by
Zonk
on Thu Apr 17, 2008 06:36 PM
from the is-that-like-1337-leet dept.
from the is-that-like-1337-leet dept.
An anonymous reader writes "The USENIX LEET workshop held earlier this week in San Francisco offered neat insights into the Storm botnet, including two papers showing the difficulty of accurately measuring the botnet's size, and one on the way it conducts its spamming campaigns (down to the template language used). There was a bunch of other cool work too, so check out the papers."
Related Stories
Firehose:Storm dismantled at USENIX LEET workshop by Anonymous Coward
This discussion has been archived.
No new comments can be posted.
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Full
Abbreviated
Hidden
Loading... please wait.
Broken Link on front page (Score:5, Informative)
Nifty (Score:5, Insightful)
Scary.
Re:Nifty (Score:4, Insightful)
Parent
Re:Nifty (Score:5, Interesting)
Sure, these guys are somewhat clever, but they're not the real geniuses behind the technology.
And yes, the researchers did a great job, too. It's not easy picking unknown protocols apart!
Parent
Re: (Score:2)
Re: (Score:2)
My pet love/hate for botnets (Score:5, Insightful)
Re: (Score:2)
Re:My pet love/hate for botnets (Score:4, Funny)
Parent
Re: (Score:2)
+1 on the other poster regarding SpamAssassin. I maintain a server install of it and it rocks. If you are a user, you can still run RBL checks on email (header parsing), and URIBL gets rid of tons or Google-hosted (Blocgspot) spam.
Now, the SA ruleset is good (organization could be better from a developer perspective... lots of overlapping rules
Re: (Score:2)
My only question (Score:2, Funny)
Re: (Score:2)
misnomer? (Score:5, Informative)
Dismantled implies that it's shut down. Last I heard, it was still running, and sub-botnets (tropical depressions?) were being sold. Botnet franchising, if you will.
Re: (Score:2)
But hey, why let a little thing like clear communication force you to do boring things like "learning" and "reading". It's much more fun to throw random semi-related words together with meanings that aren't what you're actually trying to say.
The ironing is delicious.
Re: (Score:2)
However, since it hasn't yet, perhaps I should have used a calmer and more rational word, such as "analyzed".
It doesn't have the same visceral impact as "vivisected", but it makes up for that by being both academic and explanatory - unlike "dismantled", which makes it sound like it has a cameo in WALL-E.
"Shatter Her Meat Tunnel and Bash Down Walls..." (Score:5, Funny)
"... With Your Humongous New Cock." (actual subject header of spam email received)
Seriously, we haven't had this kind of inspired ribald poetry since William Shakespeare.
I say bring it on, we need the spam entertainment.
SAVE THE BOTNET - SPAM IS ART
Dans la viande a bon marche, il est poesie
What user-agent string is it seeking? (Score:5, Funny)
So... three guesses what user-agent it's looking for.
Re:What user-agent string is it seeking? (Score:5, Funny)
Sarah Connor?
Parent
Re: (Score:2, Funny)
*grin*
Another paper on "Malicious Hardware" (Score:5, Interesting)
Re: (Score:2)
Not all bad! (Score:3, Funny)
Re:Wow ok. (Score:4, Informative)
Parent
Re: (Score:3, Funny)