Denial-of-service attack is a type of attack on a network that is designed to crash the network and bringing it to its knees by flooding it with excessive invalid requests and useless traffic. In other words, a denial-of-service (DoS) is any type of attack where hackers try to prevent legitimate users from accessing the service on their Internet connection. In a DoS attack, the attacker usually sends excessive messages asking the server or network to authenticate those requests which have invalid return addresses. However, while sending the authentication approval, the server or network will not be able to find the return address of the attacker that will cause the server to wait before closing the connection. And when the server closes the connection, attacker sends more messages with invalid return addresses for authentication. Attackers keep on doing so and keep the server or network busy as server will not be able to authenticate messages with invalid return addresses and will stay in busy state.

In computing environment Denial of Service (DoS) attack that a hacker makes to flood network with fake traffic so that the legitimate people cannot visit or access a website as the network has been flooded with fake traffic. Hackers may use software applications to hack your network and crash it completely. The network or site will not be able to process all requests once the hacker manages to leverage a DoS attack. Rather genuine visitors will also see an error message. A DoS attack on a business may end up losing customers and as well as spoiling its search engine optimization efforts. It may also be a case with Distributed Denial of Service (DDoS) attacks that they launched through botnets from multiple computers installed at different locations to flood the website with requests or to use up bandwidth, or to make the system unavailable. The botnets are connected devices already infected with malware that allows the attacker to control the computer remotely.

As in the case of Anonymous, there may be multiple reasons behind these attacks including blackmailing, vandalism, revenge, extortion, or hacktivism. No network and website is safe from these attacks from insurance companies to high profile enterprises or news sites to banks. All are exposed to such attacks. DoS attacks are not very complex like phishing attacks. They are usually carried out by highly experienced botmasters or script kiddies who can rally up a significant number of infected computers. Script kiddies are not software engineers. They are internet hooligans who purchase advance software created by skilled programmers to scan a computer for vulnerabilities.

An attacker can perform DoS attack in a several ways such as:

  • Preventing access to a service by disrupting the connections between two machines
  • Preventing legitimate network traffic by flooding the network
  • Blocking a particular user from accessing a service
  • Disrupting a service to an individual or a specific system
  • Resetting of TCP sessions and disrupting the state of information in other way
  • Overwhelming users account by sending fake emails in bulk

A victim of a DoS attack will face the following issues:

  • Interference in network connection
  • Ineffective and inaccessible services
  • Interruption of network traffic

All DoS attacks may not be malicious

Sometimes, your website if it is a ecommerce website may flood with traffic for a brief period of time on special occasions like Black Friday or Cyber Monday. Many a times, heavy traffic of shoppers hangs the serving capabilities and making a website inoperable in the mayhem of securing some products at discount rate. Businesses who know that scenario, their system administrators already plan for such events and temporarily scale up their infrastructure to make it able to accommodate huge number of customers in that small span of time.

How to know if you’re a victim of DoS

For a non tech-savvy it might be difficult to immediately detect a DoS attack or take any actions on its own. There are some basic tips for them to detect i you are a victim of DoS attack.

First check if your website is slow. You need to scan your computer and also check log files if your website is taking longer than usual to run.

Because DDoS attacks are usually launched from multiple locations, so they can’t be stopped only by cutting off one IP address. The wisest step users need to take immediately is contact their Internet Service Provider for help. Alternatively, to be able to briefly accommodate a much larger number of visitors than your site usually experiences, you can design your infrastructure with load balancing in mind.

