asciilifeform: great many places have no 'ingress filtering'
asciilifeform: this in turn is fundamental braindamage baked into a good chunk of the net.
asciilifeform: all of the 'amplification' tricks rely on the ability to send (and see them routed) packets with spoofed origin ip.
asciilifeform: they answer to any fool who can send some spoofed packets.
asciilifeform: the machines in question are not 'pwned' in the conventional, permanent sense
asciilifeform: same principles apply to ntp flooding as earlier ssdp - anyone who wishes can 'walk away with' the 'bots'.
asciilifeform: from the department of nyooz yoo can yooze - kakobrekla provided data from which we learn that ddos man has switched from ssdp to ntp 'amplification' attack (see literature.)☟︎
asciilifeform: once posted in the open, the chumps begin to get 'overgrazed'
asciilifeform: ddos aficionados scan the net for these boxes, and then sell (or sometimes simply post) the resulting chump list
asciilifeform: for the impatient: the way this particular type of ddos works is called 'amplification.' certain kinds of misconfigured consumer routers will send several packets to victim ip for every packet received from the diddler's. hence amp.
asciilifeform: kakobrekla: if you can be bothered, try the experiment again, with tcpdump log. and post or send privately (i only need packet payloads and originator ip)
asciilifeform: ;;later tell kakobrekla when you measured the 1+gb/sec or whatever of ddos, didja log incoming packets ?
asciilifeform: at first it works, but then some freenode bot instantly removes it << wtf is the deal with the 'cloaking' thing anyway. why the idiocy of displaying ip by default ?
asciilifeform: ben_vulpes: not so much the custom of rings being a mystery, but how it marks the territory as being yours in particular, to the naked eye
asciilifeform recalls one of the folks at mircea_popescu's party having collar
asciilifeform: lol, ring has your coat of arms on it?
asciilifeform: mircea_popescu: ben_vulpes was speaking of the well-known fact that a new car in usa loses around a fifth of its market value when driven off the merchant lot
asciilifeform: BingoBoingo: ransomware article << funny thing, i have plenty of windows boxen, emulators, vm, etc. they are used for the purpose for which they work best: running crapware.
asciilifeform: BingoBoingo: this is called 'degenerate case'
asciilifeform: the basic idea being that a computer's owner should be able -and expected- to understand every aspect of every part in the machine (whether physical or logical) - and that everything about the design should be thought of with the purpose, above all others, of making this possible.