A router can only handle so much information coming into it at one time. Every machine has its limits and routers are no exceptions. Well, when the nasty trend of denial of service attacks started early this century, routers were unprepared for them. As they began to understand what was happening they began to compensate for the problem. But there was still a way around it. To understand this we first have to understand what a denial of service attack is.
A denial of service attack is just as it sounds. It is when someone prevents the router or routers from servicing the network. The question is, how do they do this? As previously stated, a router can only handle so much information coming into it to be routed at a time. If too much information starts coming in then the router gets overloaded and can't forward the information fast enough. Ultimately, what happens is this slows the network down to the point where nobody can access it. In a denial of service attack, which is a deliberate attempt to cause this problem, a person will send an enormous amount of information from one computer to the router at one time. Eventually this will effectively shut down the network. The reason is because of the trickle down effect. Once the main routers start to get overloaded they start to send messages to the rest of the network that the connection is full. These messages start to cascade through the entire network until all the pathways in the network are full and nobody can communicate with any server on the network.
When companies and web sites began to understand what was happening then started to put safeguards in place. They would put checks in the router software to see if a large amount of information was coming from one IP address. If so, then it simply discarded the information and didn't attempt to pass it on. It seemed that the problem was solved. Not so.
Hackers began to figure out that if they send this enormous amount of information from multiple computers or IP addresses, the routers would have no way of knowing that a denial of service attack was in progress because it would see all this information coming in from multiple locations. Ultimately again, the network would effectively be shut down.
In response to this, manufacturers of routers have placed additional safeguards into their routers to simply check for unusual traffic. The problem with this is that in some cases there is a large amount of traffic that is normal, like in the case of a news site being hit with an overload because a major breaking story hits the airwaves.
It remains to be seen if the hackers or the router manufacturers are going to win this war.
Denial Of Service Attack
DOS attack is a term which stands for denial of service attack. Denial of service is a type of computer attack instigated most often by hackers or terrorists who wish to shut down or disrupt Internet services. Denial of service attacks are perpetrated many ways, but the three most common are bandwidth consumption, resource consumption, and network connectivity.
Bandwidth Consumption DOS attacks
Bandwidth consumption DOS attacks used to be done by groups of hackers who flood the targeted website with useless data packets which stops legitimate users from accessing the unfortunate website. This method is called a flood DOS attack. A flood DOS attack used to require a significant degree of coordination and communication between hackers. In 1999 a new type of flood DOS attack was instigated called a zombie flood DOS attack. A zombie flood DOS attack is when a single person infects several even hundreds of unsuspecting computers and controls them remotely to attack a single target. The unsuspecting computers act as zombies unknowingly attacking the perpetrator's intended target.
Resource Consumption DOS Attacks
Resource consumption DOS attacks are when network resources are overburdened and cause the rest of the network to slow down. A popular target for resource consumption are pop3 mail servers. A computer which is connected to the network but is unknowingly infected could start sending out a thousands even millions of emails. The network recognizes the computer and email requests as legitimate and there for tries to process them. In the process of trying to send out millions of emails the network get bogged down and grabs resources from other places so that other network uses lose their connections.
Network Connectivity DOS attacks
In this type of denial of service the attacker attempts to force the server not to communicate on the network and hence denies a service. This is different from bandwidth consumption DOS attacks in that the bandwidth remains open, just that the attacker has denied access to it.
What to Do About DOS Attack
Antivirus software can have limited effects on DOS Attacks, mostly by preventing resource consumption DOS attacks if the software is properly updated. Once an attack begins both firewalls and antivirus software becomes useless. The only real solution is application front end hardware, which can recognize a DOS attack as it happens. By recognizing the attack as it is happening the application front end hardware can divert resources to legitimate users and deny the attackers access.
Both Michael Russell & Ariel R are contributors for EditorialToday. The above articles have been edited for relevancy and timeliness. All write-ups, reviews, tips and guides published by EditorialToday.com and its partners or affiliates are for informational purposes only. They should not be used for any legal or any other type of advice. We do not endorse any author, contributor, writer or article posted by our team.
Michael Russell has sinced written about articles on various topics from Celebrities, Dieting and Diabetes Treatment. Michael RussellYour Independent guide to . Michael Russell's top article generates over 2240000 views. to your Favourites.
Books On Self Confidence It is not a learned behavior. It is not something you can teach your child. It is something your child feels on the inside and that is expressed as joy, love, and full self-expression on the outside