ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Lycos denies attack on zombie army

Dan Ilet ZDNet.co.uk

Published: 01 Dec 2004 13:50 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Internet portal Lycos has denied its 'make love not spam' Web site was hacked into and defaced last night.

The company said that email reports that contained an apparent mirror image of the Web site when it was hacked were a hoax generated by the spammers.

"This is a hoax," said Malte Pollmann, director of communication services for Lycos. "We have obviously reached our goal and are getting to the spammers. On our servers we don’t have any logs of an attack. No one was able to verify that. I wouldn't be surprised if [the screensaver] causes this in the future. We have a couple of port scans, but that's normal."

The Web site was reported to have been inaccessible for some time last night and an email was sent to security company F-Secure with what appeared to be a mirror image of a defacement of the site that read:

"Yes, attacking spammers is wrong. You know this, you shouldn't be doing it. Your IP address and request have been logged and will be reported to your ISP for further action."

Lycos launched its 'make love not spam' campaign, which offers users a screensaver that helps to launch distributed denial-of-service (DDoS) attacks on spammers' Web sites, on Monday. The company said the screensaver uses the idle processing power of a computer to slow down the response times from spammers' Web sites -- much in the same way spammers use compromised PCs to distribute unsolicited email messages.

But Lycos also denied it was using denial-of-service attacks.

"I have to be very clear that it's not a denial-of-service attack," said Pollmann. "We slow the remaining bandwidth to 5 percent. It wouldn't be in our interests to [carry out DoS attacks]. It is to increase the cost of spamming. We have an interest to make this, economically, not more attractive."

Head of international spam fighting organisation Spamhaus Steve Linford said that by attacking spammer bandwidth, Lycos could inevitably be attacking innocent users' bandwidth too.

But Pollmann sidestepped the question of doing this: "We want to hit targeted bandwidth. We are selecting spammers form blacklists. We verify every address. Professional spammers run on very dedicated media."

Finnish antivirus firm F-Secure yesterday warned users not to participate in Lycos' campaign because it might involve "possible legal problems".

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with HP

Did you find this article useful?
77 out of 154 people found this useful



Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

Do you love SQL Server?Junior-level SQL server developer*Finance!

Do you love SQL Server? Are you currently working as a SQL Server developer seeking your career-break into the exciting and fast-paced world of ...

Do you love technology?? Are you a Linux/ Unix Administrator??

Do you love technology? Are you a Linux/ Unix Administrator? Are you looking for a job to make you get out of bed in the morning? SO do you want to ...

Campaign Manager Avaya/Melitta - 25,000 - 30,000 Yorkshire

A very large Financial Institute are looking to bring in a Campaign Manager to help with the day to day running of a Melitta and Avaya Dialer system. ...

Sentry Posts Blog

Mobile Linux Better For Mobile Busines...

Mobile Linux Better For Mobile Business Apps? Author: Eric Everson, MyMobiSafe.com As mobile Linux is carving it’s footprint on the future of mobile application development, the... More

Post a comment

DWP downplays security breach

The Department for Work and Pensions (DWP) has admitted that some of its staff have been forwarding passwords with password protected material. An email that was leaked on the 'Dizzy... More

Post a comment

How many headshots does one chairperso...

We got a strange request last week from the head of PR from Russian security experts Kaspersky. It seems although the company was very happy with the interview we recently carried with... More

Post a comment

Featured Talkback

On the contrary, if vendors were forced to stand behind their products it should increase innovation. It would force more, and better , testing before hitting the sales floor, resulting in fewer updates and less downtime for the consumer. At present the EULA removes responsibility from the vendor, and moves it to the user, which is a step backward. Make the vendor responsibility for their code.

By: ator1940

Read full story:
RSA: Vendor liability may stifle innovation