5 ms·
I also forgot to mention in my earlier reply the one thing you should DEFIANTLY not do: pay an attacker to stop. I often hear of attacks that are accompanied b
by robotkad 16y ago
I also forgot to mention in my earlier reply the one thing you should DEFIANTLY not do: pay an attacker to stop.
I often hear of attacks that are accompanied by an email demanding thousands of dollars via Western Union.
Attackers like this pray on small, non-technical businesses (eg blogs, small retailers) who often feel they have no option but to pay the ransom.
Guess what happens when you pay for the attack to stop? The attack stops, only to start again in 8 weeks time with a new, higher ransom email.
- dedward 16y agoNever negotiate with terrorists, right? THe thing is, this all depends on scale. If you are small scale, look at you cost per day. They won't attack you forever - their resources are limited. So if you're in that situation - okay, it sucks. First, calculalte the cost of doing business. If they're asking for 10 grand and you're thinking of paying because you'll lose that much in a few days, you're better off getting hooked up with a real DDOS protection provider - it will cost a lot less than that in the long run. If you make tons of money daily (some affiliate sites, etc) then it may (may) be worth doing both - if one day's business will cost you a quarter million in profits, and you havent' already set yourself up for DDOS, it might be worth letting hte FBI know, paying them off anyway, and then getting protection services in place so it never happens again (cause now you know) It's the small fish who just can't afford DDOS protection services and might have sites who make just enough money to live on off their site that are in the tough spot, and could be a prime target for the extortionist-type DDOS'ers. I wonder how common that is.