Features Podcasts Family Video Comics Music Tech Science Books Film & TV Games ✚

Jill

Eavesdropping on a botnet

Cory Doctorow at 6:09 am Sun, Aug 20, 2006

— FEATURED —

THE LATEST

Gweek 098: Win Hugh Howey's Paperwhite Kindle!

Book Review

Lexicon: smart, sharp technothriller from Max "Jennifer Government" Barry

Book Review

The 'Geisters: spooky, scary novel

Science

Ants and Stars: Bruce Sterling and Jasmina Tesanovic visit the Sardinia Radio Telescope in Italy

— FOLLOW US —

Boing Boing is on Twitter and Facebook. Subscribe to our RSS feed or daily email.

 

— POLICIES —

Except where indicated, Boing Boing is licensed under a Creative Commons License permitting non-commercial sharing with attribution

 

— FONTS —

Tweet
Kindle
A security researcher deliberately infected a PC with a botnet worm, then monitored it via a network proxy that caught all of its communications with the botmaster that had enslaved it. The machine was hijacked into sending mountains of spam from "dozens of IP addresses and using forged sender addresses," "advertising everything from pornography to fake Rolex watches and pharmaceuticals."
"I have two machines here running in an isolated network. I infect one with the malware, and I have the other machine pretending to be the entire Internet," he explained. The second machine, known as a sandnet, is a custom-made tool for analyzing malware in an environment that is isolated, yet provides a virtual Internet for the malware to interact with. "I can sit back and see all the interaction up to point where it [the infected machine] joins botnet's control channel. Then I can take that information, go outside and replicate it. I can see what the real server is doing to get an entire picture of the operation," Stewart said.
Link (via /.)

I write books. My latest is a YA science fiction novel called Homeland (it's the sequel to Little Brother). More books: Rapture of the Nerds (a novel, with Charlie Stross); With a Little Help (short stories); and The Great Big Beautiful Tomorrow (novella and nonfic). I speak all over the place and I tweet and tumble, too.

More at Boing Boing

Ants and Stars: Bruce Sterling and Jasmina Tesanovic visit the Sardinia Radio Telescope in Italy

The Snowden Principle

Comments are closed.