[Operators] XMPP DDoS on yax.im today

Peter Schwindt operators at schwindt-net.de
Tue Aug 30 13:06:49 UTC 2016


Moin,

On 08/30/2016 02:50 PM, Georg Lukas wrote:

[...]
> A new DDoS is going on for two hours now, now from 155 different domains
> (most of which are on yesterday's list). 

Let me guess: None of these servers have captchas enabled for account
registration?

[...]

> 2. the accounts do not log in immediately after registration, they are
>    registered in bulk and sit idle for multiple days before first use

That one is easy to cope with. Automagically remove newly created
accounts that haven't been used in <n> days. For small values of <n>.


Thanks for keeping us updated.

Best,
Peter


More information about the Operators mailing list