Damnatio ad bestias: crowd-filter as a panacea for DDoS

Post on 12-May-2015

426 views 1 download

Tags:

Transcript of Damnatio ad bestias: crowd-filter as a panacea for DDoS

DAMNATIO AD BESTIASCrowd-filter as a panacea for DDoS

Denis Makrushin (@difezza)Kaspersky Lab

http://defec.ru

Denis Makrushin (@difezza)Kaspersky Lab

http://defec.ru

2

It was like that

3

Nowadays: amplify it!

SaaS Amplification

4

«The world is not enough»

• “Narrow neck” effect• “Friendship” with service

providers• Limited resources

• Advanced filtration system… but limited resources

• Neural Networks and Intelligence, but limited resources

• A lot of resources, but the limited resources

Point of (no)return

5

Route it via routers pool Common AddressRedundancy Protocol

Crowd-filter

6

• Hybrid P2P (routing node and filtration node)

• Traffic filtering based on the characteristics of node

• Route optimization to transfer content

7

“Creating of new ideas it’s quite simple:enough to know how to mix the obvious and the impossible.”

Pieter Hein

The obvious

8

The impossible

9

Thanks!Any questions?

condifesa@gmail.comtwitter.com/difezza

http://defec.ru/