UPDATED 14:01 EDT / FEBRUARY 22 2012

NEWS

Hackers’ Internet Shutdown Ploy Likely to Flunk, Experts Say

Pundits say that the recent hacker threats of shutting the Internet’s root Domain System (DNS) servers and cutting online connectivity won’t be possible, at least not at the moment.

The hackers are alleged members of Anonymous who intends to carry out their so-called “Operation Global Blackout” on March 31. The ploy will serve as a retort against Wall Street for implementing SOPA, calling them “irresponsible leaders and the beloved bankers who are starving the world for their own selfish needs.”

The group avers of having able to compile a “Reflective DNS Amplification DDOS tool” based on AntiSec’s DHN tool. Here’s a fraction of their Pastebin post detailing the basics:

“The principle is simple; a flaw that uses forged UDP packets is to be used to trigger a rush of DNS queries all redirected and reflected to those 13 IPs (of the targeted root DNS servers),” the post notes. “The flaw is as follow; since the UDP protocol allows it, we can change the source IP of the sender to our target, thus spoofing the source of the DNS query.”

As menacing and convincing as that may sound, experts say that taking down the worldwide web wouldn’t be a walk in the park. Rod Rasmussen, president and chief technology officer of security firm IID, pointed out that root operators are already aware of this threat, and it’s been there for some time. Previous attack has only incurred it minimal negative effects. Errata Security CEO Robert Graham also said that it’s virtually impossible to take down all of the Internet’s servers for significant periods.

“To have a serious shot at taking out all 13, a hacker would have to test out attacks on each one,” Graham blogged. “But, the owners of the systems would notice the effectiveness of the attacks, and start mitigating them before the coordinate attack against all 13 could be launched.”

“The #Anonymous hackers can [certainly] cause local pockets of disruption, but these disruptions are going to be localized to networks where their attack machines are located, or where their “reflectors” are located,” he continued. “They might affect a few of the root DNS servers, but it’s unlikely they could take all of them down, at least for any period of time. On the day of their planned Global Blackout, it’s doubtful many people would notice.”

Because of the operation being a flurry of miscalculations, Ramussen suspects that the “Pastebin post was a hoax or ‘troll’ by an individual rather than any collective/consensus operation. Regardless of the authenticity of this specific threat, the root operators are continuously working on mitigating issues, most of which being unintentional, that could potentially impact the core DNS, and doing a pretty good job overall.”

“The case for this being a troll is an easy one,” said Kit Dotson, SiliconANGLE’s HackANGLE editor; “it’s the function of Anonymous as a group that depends not just on consensus of idea, but of action, and most of the individuals who choose to take up that banner use the Internet on a regular basis. There’s so little reward to taking down the Internet itself–especially if the point is that other governments are trying to censor it–that most individuals won’t want to be part of this, which will greatly diminish any impact it could possibly have.”

This isn’t the first time an Anonymous subgroup threatened to take down the Internet. There was one that was scheduled to happen on March 8, then it was pushed to March 30, and this they will carry out still by aiming a distributed denial-of-service attack at the DNS root servers. This has taken Anonymous at long lengths but the FBI has a kill switch that thanks to a massive infection by a DNS hijacking virus, could actually disrupt portions of the Internet with just a press of a button, and they might flip that switch on March 8.


A message from John Furrier, co-founder of SiliconANGLE:

Support our open free content by sharing and engaging with our content and community.

Join theCUBE Alumni Trust Network

Where Technology Leaders Connect, Share Intelligence & Create Opportunities

11.4k+  
CUBE Alumni Network
C-level and Technical
Domain Experts
15M+ 
theCUBE
Viewers
Connect with 11,413+ industry leaders from our network of tech and business leaders forming a unique trusted network effect.

SiliconANGLE Media is a recognized leader in digital media innovation serving innovative audiences and brands, bringing together cutting-edge technology, influential content, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — such as those established in Silicon Valley and the New York Stock Exchange (NYSE) — SiliconANGLE Media operates at the intersection of media, technology, and AI. .

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a powerful ecosystem of industry-leading digital media brands, with a reach of 15+ million elite tech professionals. The company’s new, proprietary theCUBE AI Video cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.