iTnews
  • Home
  • News
  • Technology
  • Networking

Mobile providers, IPv6 prompt DDoS worries

By James Hutchinson
Sep 19 2011 12:00PM
Follow google news

'Accidental ISPs' lack network design expertise.

The design of mobile data networks and gradual transition to internet protocol version 6 (IPv6) have created easy targets for distributed denial of service (DDoS) attacks, according to security vendor Arbor Networks.

Mobile providers, IPv6 prompt DDoS worries

Arbor's Asia Pacific solutions architect, Roland Dobbins, labelled mobile providers "accidental ISPs" and likened their network design principles with poorly designed enterprise networks.

"Most mobile wireless networks were designed with minutes in mind, the TCP/IP part was an afterthought," Dobbins told attendees at the Australian Network Operators Group (AusNOG) conference in Sydney last week.

"With the rise and popularity of iOS devices, mobile providers worldwide have essentially become accidental ISPs - the data side is more important than the voice side."

DDoS attacks had spiked 102 percent over 2010, according to a survey of providers by Arbor.

Despite their expertise in wireless communications, mobile providers have not proved up to task when it comes to provisioning protected data for smartphones, according to Dobbins.

The widespread installation of carrier-grade network address translation (NAT) devices and stateful firewalls across the networks had harmed the network's integrity and allowed for greater chance of DDoS attacks from a botnet of smartphones or wireless-enabled devices, he said.

Despite having the past several years to regain expertise in the field, he found the same mistakes replicated across newer deployments of WiMAX and LTE networks.

The network design had allowed connected devices to deliberately or inadvertently trigger DDoS attacks by continuously pinging a carrier for hosts or open ports.

"Now you have a big data outage for many, many users who are served by the stateful firewall," he said.

The proliferation of NAT devices across carrier and enterprise networks was unlikely to be abated soon, too, as both attempted to transition toward IPv6 in coming years.

"We're actually going to see more NAT with IPv6," he said, likening carriers and enterprises with making the same mistakes as their mobile counterparts.

To minimise risk of DDoS, Dobbins recommended companies drop deployments of unnecessary hardware providing more points of failure on a network, while providing sufficient protection to those hardware devices that did remain.

Even on growing mobile carrier networks, providers needed to control their users.

"You need to have enough visibility in your network traffic to understand when this malicious, harmful traffic is being generated by botted hosts on your wireless networks and have the ability to mitigate that traffic and potentially quarantine those users," he said.

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:
arbor networksausnogddosnetworkingtelco/isp

Related Articles

  • Federal Parliamentary Computer Network set for its "most significant" upgrade Federal Parliamentary Computer Network set for its "most significant" upgrade
  • Marathon OAIC investigation finds Optus breached 51,000 customers' privacy Marathon OAIC investigation finds Optus breached 51,000 customers' privacy
  • Kmart Group to expand RFID tagging to more products and to Target Kmart Group to expand RFID tagging to more products and to Target
  • Superloop self-serve AI resolutions top 330,000 cases Superloop self-serve AI resolutions top 330,000 cases
Join our WhatsApp Channel

Partner Content

Agile isn’t the problem: why projects still fail, and what’s missing
Partner Content Agile isn’t the problem: why projects still fail, and what’s missing
Why resilient communications are becoming critical infrastructure for modern enterprise IT
Promoted Content Why resilient communications are becoming critical infrastructure for modern enterprise IT
Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
Promoted Content Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
The hidden economics of AI: Why token usage matters more than you think
Partner Content The hidden economics of AI: Why token usage matters more than you think

Sponsored Whitepapers

When cyber risk has no clear owner: A practical guide for senior Australian business leaders
When cyber risk has no clear owner: A practical guide for senior Australian business leaders
Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
High-volume data sources for AI-driven security analytics
High-volume data sources for AI-driven security analytics
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • Forrester's AI Forum Sydney Forrester's AI Forum Sydney
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Kmart Group to expand RFID tagging to more products and to Target

Kmart Group to expand RFID tagging to more products and to Target

WA man jailed for at least five years for evil twin attack

WA man jailed for at least five years for evil twin attack

Optus fast-tracks network operations insourcing from Nokia

Optus fast-tracks network operations insourcing from Nokia

Australia Post deploys ThousandEyes across its retail network

Australia Post deploys ThousandEyes across its retail network

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.