Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Matariki

(18,775 posts)
Fri Nov 8, 2013, 02:31 AM Nov 2013

Denial-of-service tool targeting Healthcare.gov site discovered

Why does this not surprise me?

http://arstechnica.com/security/2013/11/new-denial-of-service-attack-aimed-directly-at-healthcare-gov/

Researchers have uncovered software available on the Internet designed to overload the struggling Healthcare.gov website with more traffic than it can handle.

"ObamaCare is an affront to the Constitutional rights of the people," a screenshot from the tool, which was acquired by researchers at Arbor Networks, declares. "We HAVE the right to CIVIL disobedience!"

In a blog post published Thursday, Arbor researcher Marc Eisenbarth said there's no evidence Healthcare.gov has been subjected to any significant denial-of-service attacks since going live last month. He also said the limited request rate, the lack of significant distribution, and other features of the tool's underlying code made it unlikely that it could play a significant role in taking down the site. The tool is designed to put a strain on the site by repeatedly alternating requests to the https://www.healthcare.gov and https:www.healthcare.gov/contact-us addresses. If enough requests are made over a short period of time, it can overload some of the "layer 7" applications that the site relies on to make timely responses.

The screenshot below shows some of the inner workings of the unnamed tool.

more at the link
1 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Denial-of-service tool targeting Healthcare.gov site discovered (Original Post) Matariki Nov 2013 OP
I think its written in assembler... - n/t lapfog_1 Nov 2013 #1
Latest Discussions»General Discussion»Denial-of-service tool ta...