Damnatio ad bestias: crowd-filter as a panacea for DDoS

10
DAMNATIO AD BESTIAS Crowd-filter as a panacea for DDoS Denis Makrushin (@difezza) Kaspersky Lab http://defec.ru

Transcript of Damnatio ad bestias: crowd-filter as a panacea for DDoS

Page 1: Damnatio ad bestias: crowd-filter as a panacea for DDoS

DAMNATIO AD BESTIASCrowd-filter as a panacea for DDoS

Denis Makrushin (@difezza)Kaspersky Lab

http://defec.ru

Denis Makrushin (@difezza)Kaspersky Lab

http://defec.ru

Page 2: Damnatio ad bestias: crowd-filter as a panacea for DDoS

2

It was like that

Page 3: Damnatio ad bestias: crowd-filter as a panacea for DDoS

3

Nowadays: amplify it!

SaaS Amplification

Page 4: Damnatio ad bestias: crowd-filter as a panacea for DDoS

4

«The world is not enough»

• “Narrow neck” effect• “Friendship” with service

providers• Limited resources

• Advanced filtration system… but limited resources

• Neural Networks and Intelligence, but limited resources

• A lot of resources, but the limited resources

Page 5: Damnatio ad bestias: crowd-filter as a panacea for DDoS

Point of (no)return

5

Route it via routers pool Common AddressRedundancy Protocol

Page 6: Damnatio ad bestias: crowd-filter as a panacea for DDoS

Crowd-filter

6

• Hybrid P2P (routing node and filtration node)

• Traffic filtering based on the characteristics of node

• Route optimization to transfer content

Page 7: Damnatio ad bestias: crowd-filter as a panacea for DDoS

7

“Creating of new ideas it’s quite simple:enough to know how to mix the obvious and the impossible.”

Pieter Hein

Page 8: Damnatio ad bestias: crowd-filter as a panacea for DDoS

The obvious

8

Page 9: Damnatio ad bestias: crowd-filter as a panacea for DDoS

The impossible

9

Page 10: Damnatio ad bestias: crowd-filter as a panacea for DDoS

Thanks!Any questions?

[email protected]/difezza

http://defec.ru/