ICANN/GNSO GNSO Email List Archives

[ga]


<<< Chronological Index >>>    <<< Thread Index >>>

[ga] SIP Attacks From Amazon EC2 Going Unaddressed

  • To: imatx26@xxxxxxxxxxxxxx, ecommerce@xxxxxxxxxxxxxxxxxxx, fbi.dallas@xxxxxxxxxx, robert.smith1@xxxxxxxxxxxxx, rod_beckstrom@xxxxxxxxx, SenateWebmail@xxxxxxxxxxxxxxxxx, ga@xxxxxxxxxxxxxx, info@xxxxxxx, abuse@xxxxxxxxxx, postmaster@xxxxxxxxxx
  • Subject: [ga] SIP Attacks From Amazon EC2 Going Unaddressed
  • From: "Jeffrey A. Williams" <jwkckid1@xxxxxxxxxxxxx>
  • Date: Mon, 19 Apr 2010 14:36:48 -0500 (GMT-05:00)

All,

See:
https://it.slashdot.org/story/10/04/17/2059256/SIP-Attacks-From-Amazon-EC2-Going-Unaddresse
also see:
http://www.voiptechchat.com/voip/457/amazon-ec2-sip-brute-force-attacks-on-rise/
http://www.voipusersconference.org/2010/amazon-ec2-flood-attacks/


  Seems that yet again Amazon is causing problems for the user
community unecessarly and in an egregious maner.  This is of course
nothing new for Amazon as many informed users well know as well
as our LEA and other government officials accordingly.  The question
is why hasn't significant action such as a temporary take down
been effected to correct the problem and/or give amazon the opertunity
to take remedial action to do so.  What's even more interesting is
that this problem is one related to "Cloud Computing" which is
of course not at all surprising given the inhearent insecurity of
same.  Further given that Amazon.com's DNS is so badly misconfigured
still despite I myself reporting same repeatedly to DHS, CERT, and
Infraguard repeatedly.  See:
http://www.dnsstuff.com/tools/dnsreport?domain=Amazon.com&format=raw&loadresults=true&token=2301b89c7e03444b3db2700219d89019


Regards,

Jeffrey A. Williams
Spokesman for INEGroup LLA. - (Over 294k members/stakeholders and growing, 
strong!)
"Obedience of the law is the greatest freedom" -
   Abraham Lincoln

"Credit should go with the performance of duty and not with what is very
often the accident of glory" - Theodore Roosevelt

"If the probability be called P; the injury, L; and the burden, B; liability
depends upon whether B is less than L multiplied by
P: i.e., whether B is less than PL."
United States v. Carroll Towing  (159 F.2d 169 [2d Cir. 1947]
===============================================================
Updated 1/26/04
CSO/DIR. Internet Network Eng. SR. Eng. Network data security IDNS. div. of
Information Network Eng.  INEG. INC.
ABA member in good standing member ID 01257402 E-Mail jwkckid1@xxxxxxxxxxxxx
Phone: 214-244-4827




<<< Chronological Index >>>    <<< Thread Index >>>