By Jennifer LeClaire E-Commerce Times
12/03/04 10:53 AM PT
It didn't take long -- just a couple of days -- before newfound Lycos Europe enemies organized a multi-pronged counter-attack with delirious affects that forced Lycos to turn tail and run, according to Netcraft, a network-security services company in Bath, England.
eMarketer Whitepaper: Optimizing the E-Commerce Experience
From the Web to the Contact Center, are you prepared to proactively engage and keep your savvy customers? Read how e-commerce leaders are optimizing their sites with ratings, reviews, live help, Web analytics, mobile and more.
Lycos Europe waged war against spammers earlier this week but the ensuing battles have now resulted in it withdrawing its controversial Web site that offered an anti-spam screensaver, replacing it with a graphic that urges visitors to "stay tuned!"
Lycos Europe announced on Monday it had created a downloadable screensaver aimed at putting spammers out of business and made the tool available through its MakeLoveNotSpam.com Web site.
The screensaver flooded spammers' Web sites with requests for data. The theory was that a very large number of requests sent at the same time would slow response time and result in increased bandwidth costs for spammers.
It didn't take long -- just a couple of days -- before newfound Lycos Europe enemies organized a multi-pronged attack with delirious affects that forced Lycos to turn tail and run to another URL, according to Netcraft, a network-security services company in Bath, England.
Why the Retreat?
Security firm F-Secure reported one aspect of the counterattack. It said that Moretgage.info, a spammer site that used to sell cheap mortgage loans, added a "meta refresh tag" on its front page that redirected traffic to Lycos Europe's screensaver site.
Netcraft reported another aspect that might have caused the retreat. It said telecommunications services provider Global Crossings and cable operator Cox Communications appeared to have blocked access to the Lycos Europe site yesterday.
"Global Crossing's Acceptable Use Policy prohibits denial of service attacks," reads a company statement. "As a result, we have 'black holed' the Lycos Europe Web site, which issues instructions to the clients participating in these attacks. 'Black holing' means we are not carrying any traffic to or from that Web site on our network."
Knock Out Punch?
If these attacks didn't cause a black eye, the next spammer offensive gave it another good shot by defacing the Lycos Europe site.
F-Secure reported that spammers replaced the home page with a screen that read, "Yes, attacking spammers is wrong, you know this, you shouldn't be doing it. Your IP address and request have been logged and will be reported to your ISP for further action."
The attack-counter attack brings up serious legal questions, according to Ken Dunham, the director of malicious code research at iDefense, a Reston, Virginia-based threat intelligence firm.
Wild, Wild West
Dunham told the E-Commerce Times that Lycos Europe's screensaver certainly goes into the arena of counter attacks, an increasing issue of concern and discussion this year in light of Symbiot's iSIMS tool introduced in March to overtly attack offenders in a variety of ways.
"The question is: should we engage in a vigilante type of justice system much like the Wild West once was or should we not?" Dunham asked. "In the Wild West, everybody did what was right in his own eyes, and that was not always in the best interest of the community at large."
Dunham said the Lycos Europe controversy pushes the envelope and will force the industry to better clarify what is a DDoS attack and what is ethical in terms of defending Internet properties from spammer and other attacks.
Lycos reportedly denied the event, but could not immediately be reached for comment on this or other issues.
Microsoft Issues Out-of-Cycle Explorer Patch December 02, 2004
Wide adoption of the latest Explorer patch may be hindered because it requires more effort than the typical Windows update. "This one's going to take a little more effort," said Ken Dunham of iDefense. "You have to remember, there's a huge number of people who will not patch and we do expect continued iframe exploits."
Related Stories
Lycos Europe Aims To Thwart Spammers with DDoS Attacks November 30, 2004
"It's not going to work," said Laura Atkins, President of the SpamCon Foundation. "Spammers will start putting in garbage URLs, and most of those will belong to innocent bystanders. If it really works as Lycos says it does, spammers will use it as a harassment tool."
Prosecutor Explains Why Spammer Sent to Slammer November 10, 2004
During my opening statement, I explained to the jury that sending spam by itself is not a crime, but when you masquerade your identity, you violate Virginia's law that took effect in July 2003. Spammers run afoul of the law when they use another's IP or domain address without authority or create a fictitious IP or domain address.
Microsoft Files More Lawsuits over Spam September 24, 2004
Going after spammers rather than focusing merely on developing antispam technology is an important step, John Movina, spokesperson for the Coalition Against Unsolicited Commercial Email, said. He told The E-Commerce Times that the United States has weaker criminal laws against spam than other countries, so it's vital to find other means to stop spammers.
Laws, Bounties, International Cooperation Fighting Spam September 23, 2004
Under the new law, either the state attorney general, an e-mail service provider or the recipient of spam may bring an action for damages of US$1,000 per e-mail, up to $1 million per incident -- although that can be reduced by the courts. The law also prohibits bringing multiple actions through use of other e-mail-advertisement-damages provisions for the same violation.
Related News Alerts
More by Jennifer LeClaire
The Digital Car: Cool Automotive Accessories, Part 2 January 16, 2007
Not all the latest high-tech automotive electronics are built to entertain. Many give the driver more information and more control. Vehicle tracking devices can tell where the car is at any time, software installed in a smartphone can turn off a vehicle's security system whenever the owner approaches, and diagnostic tools can tell what's wrong with the engine -- and how much it'll be to fix it.
'World of Warcraft' Wows 8 Million Subscribers January 12, 2007
"World of Warcraft," the massively multiplayer online role-playing game, has reached the 8 million subscriber mark. Since debuting in North America in Nov. 2004, "World of Warcraft" has become the most popular MMORPG in the world. The franchise is available in seven different languages and is played on at least four continents.
AT&T Bids Goodbye to Cingular Brand January 12, 2007
Starting Monday, AT&T will launch a multimedia campaign to transition the Cingular Wireless brand name into its advertising and customer communications. The campaign will integrate popular imagery, phrases and icons from Cingular's traditional advertising, including the "raising the bar" tagline, the "Jack" character and the color orange.