BGP hijacking

Discussion in 'other security issues & news' started by Minimalist, Dec 18, 2017.

  1. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
    https://securityaffairs.co/wordpress/66838/hacking/bgp-hijacking-russia.html
     
  2. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,078
    Location:
    DC Metro Area
    "Amazon Cloud Services IP Addresses Hijacked

    Amazon lost control of 1,300+ Amazon Cloud Services IP address for two hours yesterday, when hackers used a Border Gateway Protocol (BGP)-hijacking to reroute traffic to rogue destinations.

    The incident hijacked addresses belonging to Route 53, Amazon’s domain name system service, Internet Intelligence said on Twitter.
    Those responsible used the hijack to steal $17 million in ETH alt-coins from online cryptocurrency website MyEtherWallet.com.

    Amazon officials said: 'Neither AWS nor Amazon Route 53 were hacked or compromised. An upstream Internet Service Provider (ISP) was compromised by a malicious actor who then used that provider to announce a subset of Route 53 IP addresses to other networks with whom this ISP was peered. These peered networks, unaware of this issue, accepted these announcements and incorrectly directed a small percentage of traffic for a single customer’s domain to the malicious copy of that domain.'..."

    https://www.cbronline.com/news/amazon-cloud-ip
     
  3. guest

    guest Guest

    Shutting down the BGP Hijack Factory
    July 10, 2018
    https://dyn.com/blog/shutting-down-the-bgp-hijack-factory/
     
  4. guest

    guest Guest

    Hey, don't route the messenger! Telegram redirected through Iran by baffling BGP leak
    August 01, 2018
    https://www.theregister.co.uk/2018/08/01/bgp_route_leak_telegram_iran/
     
  5. guest

    guest Guest

    U.S. Payment Processing Services Targeted by BGP Hijacking Attacks
    August 06, 2018
    https://www.bleepingcomputer.com/ne...g-services-targeted-by-bgp-hijacking-attacks/
     
  6. guest

    guest Guest

    NIST Releases Draft on BGP Security
    Paper describes a technique to protect the Internet from Border Gateway Protocol route hijacking attacks.
    September 5, 2018

    https://www.darkreading.com/perimeter/nist-releases-draft-on-bgp-security/d/d-id/1332740
     
  7. guest

    guest Guest

    China systematically hijacks internet traffic: researchers
    October 26, 2018
    https://www.itnews.com.au/news/china-systematically-hijacks-internet-traffic-researchers-514537
    Paper: "China’s Maxim – Leave No Access Point Unexploited: The Hidden Story of China Telecom’s BGP Hijacking" (PDF): https://scholarcommons.usf.edu/cgi/viewcontent.cgi?article=1050&context=mca
     
  8. guest

    guest Guest

    Google Services Inaccessible Due to BGP Leak
    November 13, 2018
    https://www.securityweek.com/google-services-inaccessible-due-bgp-leak
     
  9. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    164,242
    Location:
    Texas
  10. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    164,242
    Location:
    Texas
    How 3ve’s BGP hijackers eluded the Internet—and made $29M

     
  11. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
    Open-source tool aims to curb BGP hijacking amid Chinese espionage concerns
    https://www.cyberscoop.com/open-sou...gp-hijacking-amid-chinese-espionage-concerns/
     
  12. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
    Internet experiment goes wrong, takes down a bunch of Linux routers
    https://www.zdnet.com/article/internet-experiment-goes-wrong-takes-down-a-bunch-of-linux-routers/
     
  13. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
  14. guest

    guest Guest

    Eliminating opportunities for traffic hijacking
    March 1, 2019
    https://habr.com/en/company/qrator/blog/442264/
     
  15. guest

    guest Guest

    For two hours, a large chunk of European mobile traffic was rerouted through China
    It was China Telecom, again. The same ISP accused last year of "hijacking the vital internet backbone of western countries."
    June 7, 2019

    https://www.zdnet.com/article/for-t...an-mobile-traffic-was-rerouted-through-china/
     
  16. guest

    guest Guest

    Cloudflare aims to make HTTPS certificates safe from BGP hijacking attacks
    Free service prevents BGP hijackers from fraudulently obtaining browser-trusted certs
    June 18, 2019

    https://arstechnica.com/information...certificates-safe-from-bgp-hijacking-attacks/
     
  17. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
    The Infrastructure Mess Causing Countless Internet Outages
    https://www.wired.com/story/bgp-route-leak-internet-outage/
     
  18. guest

    guest Guest

    MIT CSAIL’s AI detects possible IP address hijacking
    October 8, 2019
    https://venturebeat.com/2019/10/08/mit-csails-ai-detects-possible-ip-address-hijacking/
     
  19. guest

    guest Guest

    Russian telco hijacks internet traffic for Google, AWS, Cloudflare, and others
    April 5, 2020
    https://www.zdnet.com/article/russi...traffic-for-google-aws-cloudflare-and-others/
     
  20. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
  21. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,885
    Location:
    Slovenia, EU
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.