Re: China Experience ?

From: incidents.nospam13@web-cities.net
Date: 07/22/02


From: <incidents.nospam13@web-cities.net>
Date: Mon, 22 Jul 2002 09:40:16 -0700

How many of you blackhole ISP's?
I blackhole generic stuff like on the secure IOS templates but never really
considered this.
Anyone have a blackhole lists that they can share?

Regards,
Dr Bado.

----- Original Message -----
From: "Curley Mr Eric P" <CurleyEP@NOC.USMC.MIL>
To: <bonk@webchat.chatsystems.com>; "Bob DeRosier"
<bob.derosier@globalenglish.net>
Cc: <incidents@securityfocus.com>
Sent: Monday, July 22, 2002 5:22 AM
Subject: RE: China Experience ?

> I'm going to have to agree with Bob on this one. I know that most of us
> like to go to the heart of the problem and contact the ISP's sysadmin in
> times of abuse and policy issues but these subnet have been well known for
> quite some time to be black hat sanctuaries. I personal block all of
these
> subnet's at the border. If I don't do business with them then I don't
need
> to see their traffic. It has cleared up a lot of noise coming over the
> wire.
>
> Cheers,
> Eric
>
> -----Original Message-----
> From: bonk@webchat.chatsystems.com [mailto:bonk@webchat.chatsystems.com]
> Sent: Friday, July 19, 2002 9:41 PM
> To: Bob DeRosier
> Cc: incidents@securityfocus.com
> Subject: Re: China Experience ?
>
>
> On Fri, 19 Jul 2002, Bob DeRosier wrote:
>
> >
> > I am looking for information about dealing with the authorities in China
> > with regard to attack attempts. Does anyone know what the procedure is,
> who
> > to contact, what they do after they are contacted, any possible fallout
> from
> > such an action ?
>
> From a security standpoint, I've found that null routing all of their IP
> space you can find is very benefecial. In dealing with security and abuse
> related issues for quite some time, I have never had China reply or take
> any action so I've been forced to the extreme in the case with China (and
> others).
>
> > Bob
>
>
>
>
>
> =================================================
> Travis
> www.cyberabuse.org/crimewatch
> Email: Bonk@chatsystems.com | Bonk@cyberabuse.org
> =================================================
> /"\
> \ /
> X ASCII Ribbon Campaign
> / \ Against HTML Email
>
>
> --------------------------------------------------------------------------

--
> This list is provided by the SecurityFocus ARIS analyzer service.
> For more information on this free incident handling, management
> and tracking system please see: http://aris.securityfocus.com
>
> --------------------------------------------------------------------------
--
> This list is provided by the SecurityFocus ARIS analyzer service.
> For more information on this free incident handling, management
> and tracking system please see: http://aris.securityfocus.com
>
>

---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com



Relevant Pages

  • Re: Re: China Experience ?
    ... GZCERT Southern China Regional Network Emergency Response Team ... >> How many of you blackhole ISP's? ... >> Anyone have a blackhole lists that they can share? ... >This list is provided by the SecurityFocus ARIS analyzer service. ...
    (Incidents)
  • Woman tops list of Chinas richest people
    ... from the United States for use in China, shot from 36th to pole position in the ... Gome, has been knocked into second place, with his personal wealth thought to be ... the rich lists have mirrored ...
    (soc.culture.malaysia)
  • Re: China Travel Discussion List
    ... further split it into country specific lists. ... Peter spent his time answering questions about China here. ... Peter's list has no archives and Peter heavily "moderates" that list. ... I suspect I shan't be alone in ignoring this suggestion and posting ...
    (rec.travel.asia)
  • Re: Use iptables to block all non-US ssh traffic
    ... >>Ah, actually, ICANN has a web page that lists which A's are assigned ... I use China interchangably with APNIC. ... TLDs etc. as filters is mostly to reduce the volume of IDS alerts. ... Access complaints are processed by the helpdesk and security incidents ...
    (comp.os.linux.security)
  • Re: FTP scans from wanadoo.fr
    ... SecurityFocus lists. ... > This list is provided by the SecurityFocus ARIS analyzer service. ... > For more information on this free incident handling, management ... > and tracking system please see: http://aris.securityfocus.com ...
    (Incidents)

Quantcast