Daily Paul about to come under attack, may have already been infiltrated
********UPDATE AS OF 1:16 P.M. MIAMI TIME**********
My friend just called, and for his opposition to attacking the site, he was booted from the circle and his 4chan moderator account shut-down. He has one more (fake) moderator account on 4chan, but needs to wait a few hours before trying to log into it in order to ovoid suspicion.
**********UPDATE AGAIN!**********
As of 12:43 a.m. Miami time
My friend made a motion in Mod Circ to vote on calling off the attack. The vote is being held right now. I am on the phone with my friend. I will keep everyone updated.
*******UPDATE!**********
I e-mailed my friend when I got home last night and asked him to keep an eye on the 4chan post. He sent me an update at 10:21 a.m Miami time:
TARGET: DAILYPAUL.COM
ATTACK TYPE: DOS, SLUFFING, HAX ATTAX
DATE & TIME: 31 DEC 3:00 AM UTC+9 (TOKYO)
--------No New Year for Daily Paul.com!!!---------------
Anonymous 29/12/08: Dailypaul.com is full of fags, jews and redneck nuts. It is a major site for pro-Israel planning, it also has lots of gay members. We should have taken care of this a long time ago. Time to take down the site. DoS, Sluff, spam forums and hack. We need to create as many fake accounts as possible. We can get the site down within 3 hours. 2009 will mark an age with one less fag website. Level 2 members can be invited.
Anonymous 29/12/08: Love it! 10 fake accounts created.
Anonymous 29/12/08: Yo y mis amigos lo haramos. Ya hicimos como 15 paginas alla.
Anonymous 29/12/08: Level 2 is onboard with this one. would be glad to see the site go
Moot567: 29/12/08: my DoS server will be ready.
Anonymous 30/12/08: Kochira-wa Tanaka-san desu 23, Odoroita kare-wa michi-o hashitte itta!
Anonymous 30/12/08: ready
Anonymous 30/12/08: ?Podemos hacerlo mas tarde? Aunque muchos tendramos fiestas para el Neuvo Ano. Hagamoslo mas temprano o mas tarde.
Anonymous 30/12/08: si, como no.
Anonymous 30/12/08: Мы готовы и счастливы сделать это нападение, но let' s делает его более поздно для нового Year' ради s.
Anonymous 30/12/08: Level 2 votes to delay the attack until 1 Jan at 3am. Many of us have other things to do on New Year's eve night.
Moot567: 30/12/08: agree
Anonymous: 30/12/08: si, hagamoslo entonces
MasterHaxor 30/12/08: agree, let's delay the attack
Anonymous 31/12/08: 는 그것을 그 때 한다
Anonymous 31/12/08: The attack has been officially postponed until 1 Jan at 3 am UTC +9. All responders have been messaged about the change. Please keep inviting people to participate. We could use a few more dataports, ChangXing
Anonymous 31/12/08: 私はもう5つを準備ができた得る
Anonymous 30/12/08: bueno
Anonymous 31/12/08: Yay!! it wil be an new year celbration for me!
Anonymous 31/12/08: standing by, ready to take down the site
Anonymous 31/11/08: 私はずっと場所を見ている。 それらは準備することを試みている。 これは準備ができた得る考えである:
"STRATEGY TO BEAT THEM AT THEIR OWN GAME
On December 30th, 2008 MikeLawson says:
Anyone who is online tonight (tomorrow morning) get prepared for another VAGINA style attack. That seems to be about the best they've got. Here's how we can counter it:
Get about 8-10 windows open on your computer with good relevant threads and write a comment in each one or BUMP, but DO NOT POST COMMENTS!
If they start an attack, start hitting SUBMIT. This will fill the board back up with good threads as fast as it is taken over.
We're smarter than they are.
Michael: any unusual spikes in memberships?"彼らは私達が可能であるものをが知らない!
Anonymous 31/12/08: Some one tipped-off the site!! http://www.dailypaul.com/... lol!!!!!! they think they are going to prepare by opening-up lots of windows to bumb 'vagina' threads of of the screen! LOL!!! (what's with the vagina part lol). They do not understand the power of Mods Cric!!!
Moot567: 31/12/08: rotfl, they think they're all ready. good luck to them. who was the rat who informed them?
Anonymous 31/12/08: Sin dudo era uno de los miebros quein nos resondio negativamente.........
ChangXing 31/12/08: Northstar dataport is online and ready to DDoS / 北の星データ港はDDoSにオンラインそして準備ができている.
Anonymous 31/12/08: think we got the rat, account disabled.
Anonymous 31/12/08: let's spam him
---------------------------------------------------
Members RSVPs so far:
No: 116
Yes: 426
Invited: 583
***********************************
--------------------------------------------
MY FRIEND IS GOING TO TRY TO SPAM THIS THREAD TO DISRUPT THEIR ACTIVITIES. THEY MAY HAVE BEEN SERIOUSLY COMPROMISED NOW THAT THE DAILY PAUL WAS FOREWARNED ABOUT THE PENDING ATTACK
-------------------------------------------
**********************************
==URGENT==
A report from the innards of 4chan.com
A friend just showed me something he thought would concern me on 4Chan.com. The following was posted in a section of the site called 'Mods Circ', which is short for 'Moderators' Circle'. This is the inner area of the site where a lot of planning and discussion goes on. It can only be accessed through moderator accounts, but here is the link for anyone who might be an admin:
And here is what is currently posted in the forum:
TARGET: DAILYPAUL.COM
ATTACK TYPE: DOS, SLUFFING, HAX ATTAX
DATE & TIME: 31 DEC 3:00 AM UTC+9 (TOKYO)
--------No New Year for Daily Paul.com!!!---------------
Anonymous 29/12/08: Dailypaul.com is full of fags, jews and redneck nuts. It is a major site for pro-Israel planning, it also has lots of gay members. We should have taken care of this a long time ago. Time to take down the site. DoS, Sluff, spam forums and hack. We need to create as many fake accounts as possible. We can get the site down within 3 hours. 2009 will mark an age with one less fag website. Level 2 members can be invited.
Anonymous 29/12/08: Love it! 10 fake accounts created.
Anonymous 29/12/08: Yo y mis amigos lo haramos. Ya hicimos como 15 paginas alla.
Anonymous 29/12/08: Level 2 is onboard with this one. would be glad to see the site go
Moot567: 29/12/08: my DoS server will be ready.
Anonymous 30/12/08: Kochira-wa Tanaka-san desu 23, Odoroita kare-wa michi-o hashitte itta!
------------------------------------
Members RSVPs so far:
No: 89
Yes: 378
Invited: 542
4chan is strange and unpredictable, but they have caused significant trouble in the past and appear to be somewhat powerful.
You can read more about it on Wikipedia
If the content on the forum is real, Daily Paul admins should be on full alert, monitoring accounts and preparing for the possibility of a massive attack in the near future.
output















Well
so much for the great attack...... I'm sure it has a few other accounts. But we'll just take the ones we already know are his out, and the rest out as they appear. Not a biggie.
great job everybody
I had the pleasure of delating a few of those spam posts...
http://www.votenader.org/...
http://www.flickr.com/pho...
Lol
A few of us did... Stay ready, he has a few more accounts.
I hope this convinces you to
I hope this convinces you to stay on the DP! Just kidding, I saw your thread and couldn't help it. :)
Lol
Can you really see me leaving.. This place is far too fun.
I can compare that fun action
to throwing shoes at Bush LOL(remember that computer game)...
anyone planning a vacation to Bermuda LOL
http://www.votenader.org/...
http://www.flickr.com/pho...
I love that shoe game,
I love that shoe game, legalize!
Bump
Bump like the wind!
bumps
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
You're beginning to look like the problem
just let it go
Hey!
I'm just trying to stay vigilant! Sorry
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
What do you mean by
"stay vigilant?"
What can you do about it.
I have to agree with Lawson above.
Interesting that a month ago you said,
http://www.dailypaul.com/...
And now you come up with secret information that an attack is being planned at 4Chan.
Hmmm...Sounds almost like a page out of the playbook of Homeland Security.
not attacking you, just saying---
I know you have good intentions, but what will be will be. We have plenty of imminent disaster threads to choose from already. I would, knowing the right people have been made aware, delete the whole thread and stop playing into their game.
But that's just me.
I highly recommend NO ONE CLICK ON THE 4CHAN LINK
You may be opening yourself up for a hack, and then your account could be used in any attack, if any attack.
good point
http://www.votenader.org/...
http://www.flickr.com/pho...
Good point. It already happened to me.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
What happened!?
Do tell.
Several of my e-mail
Several of my e-mail accounts were hacked over the last 1/2 hour, and 4chan left their signature. And I cannot edit my own post here on the Daily Paul.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
Be very careful
I think you're being watched!
A signature..
Well it's good that at least you know that you are hacked. If you know you are hacked, and your computer were to suddenly and mysteriously start attacking, then you would know that you needed to shut it down to continue helping us here at Daily Paul to thwart the attack, as you have done so much already. That's good info. Thanks. ; )
Good point Mike.
Good point Mike.
That's rough, man
If you play with fire you could get burned.
Seriously. Be careful.
Could we get some tech-savvy people
to work on infiltrating 4chan in order to get us more direct information?
Counter-intelligence in other words.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
lol You don't "infiltrate"
lol
You don't "infiltrate" 4chan. Trolling 4chan is like pissing in an ocean of piss.
If you really want to get these attacks to end, calm down and back away from the computer screen and let Michael Nystrom handle it. It seems that he already has, so the issue is moot.
It's ok. We'll see what they do and deal with it
There's no point in getting in a frenzy.
It has already been taken care of
Thanks.
Those who are plotting this will truly be sorry.
Delete all accounts created in the last week.
.................
Talk to someone new every day. You'll be surprised what you learn.
So has anyone just tried to
So has anyone just tried to go over there and talk reason? Not that it would probably help. This is the same group that was responsible for the Palin hack. But you never know. It may be useful to just go over there and say WTF are you guys doing? We're on your side. We agree that the internet shouldn't be censored. We agree that people shouldn't be censored. What exactly is the 'legitimate' gripe with us?
That is precisely what I do
That is precisely what I do not understand. 4chan supports Ron Paul! Unfortunately, the area where the attack is being planned is only accessible by 4chan moderators and level 2 members.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
Thank you for this thread
Sorry to hear that your friend was booted off 4chan.
Thanks for the updates...*we will defend DP*
http://www.votenader.org/...
http://www.flickr.com/pho...
No problem, I'm glad my
No problem, I'm glad my friend and I were able to get this out before it happens. I had left the Daily Paul nearly 2 months ago, but when I found out about this I thought I better post it on here.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
as it happens
Michael made me one of the moderators and I am fully prepared to use my power to delate spam and its creators from DP.
http://www.votenader.org/...
http://www.flickr.com/pho...
Thank you for the head's up
We all appreciate it here.
Michael
Sure no problem. I will do
Sure no problem. I will do my best to keep everyone updated. It will be a little more difficult now that my friend cannot log in to 4chan, he can only get e-mail messages sent to him through one of his fake 4chan accounts. Has there ever been a serious DoS style attack on the Daily Paul before? I hope we make all preparations to handle it.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
Close new account creation
Close new account creation
DDOS attacks can be thwarted by closing ports.
New account creation has
New account creation has been closed for a while.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
Actually,
a spam attack (many requests to the site) is good for the site and the advertising money. We might just let it happen for a while for that reason if it is large enough.
Besides, with a little bit of studying, we already know much more than you think.
If they're just bots
If they're just bots (programs) that are doing the spamming, then it probably won't help much with ads (at least the google ads...they require javascript to load, and bots tend to not be written with javascript interpreters...it's usually irrelevant to the purposes of the bot). I'm not sure how it would affect any other ads that are on the site, however.
How a DDOS works
DDOS is not the same as spamming. A DDOS attack floods a site (in this case, the DP) with tons and tons of fake traffic. This would render the site useless. Anyone who has been here long enough to remember the money bombs knows what happens to a site when too much traffic is directed towards the servers. The site crashes.
Ad's will not pay because the traffic will not open a browser window and download the ad's from the advertisers via the links. A DDOS will only flood the dailypaul with invalid traffic, thus, never giving the computer a chance to render the advertising links.
Normally, when you connect to a website, the computer initiates what is known as a 3-way handshake. Essentially, your computer will send a message to the website saying "I'm here". The website you are connecting will send back another message saying, "I got your message, I'm here". And finally the two computers send another message to say "Ok we are connected". This is the SYN, SYN-ACK, ACK.
In a DDOS attack, the malicious computers will send the "I'm here" message (SYN), and the DailyPaul would send back the "I got your message, I'm here" signal (SYN-ACK), but in this situation the message that the DailyPaul is sending back is going into nowhere land. The address is fake.
So the DDOS will setup tons of computers (botnet) to simulate lots of traffic requests to the DailyPaul. The DP will spend all it's resources sending back messages saying "I'm here" but noone will ever be able to get through to initiate the final acknowledgment connection (ACK) because most of the addresses that the DP is supposed to connect back to will be fake.
In laymans terms... that's about how that works.
Yeah, that's a decent
Yeah, that's a decent explanation of a type or way of doing a DDoS attack. I was simply responding to bigmikedude's mention of spam and it possibly helping ad revenue for DP.
Part of the threats did include [D]DoS attacks. Now, if I were to try to pull a DDoS attack against DP, my approach would be numerous HTTP requests from a botnet (or a bunch of willing associates), to work on using up both bandwidth and server resources simultaneously, mostly on pages that require large amounts of database queries and produce larger html files (to maximize bandwidth use), and with logged in user accounts if possible (uses even more resources, due to the way Drupal works) post large amounts of junk to the site (increase database usage).
I have no idea what kind of setup they have, however. Maybe they have a botnet. Maybe it's just a bunch of people that will be manually attacking through servers with the scripts someone wrote real quick (would be pretty easy to do in python or something, and just share the script with other people). Account creation is the hardest part (and now DP has registration disabled) since you need unique email addresses for each account...unless they already had a lot of email address available, they'd have to deal with CAPTCHA's manually (slow) or programmatically (not the easiest thing to do, at least with popular webmail services like yahoo or gmail, though they can be cracked).
And this isn't even considering the fact that DP is running on an old version of Drupal (5.7 vs the latest 5.14)...there's some potential known security vulnerabilities remaining in this website. I know a lot of past vulnerabilities in Drupal involved malicious links/urls that if a user with certain privileges clicked on them would automatically execute code in the url (which would be used for creating new accounts with full site access, changing users passwords, malicious things such as deleting content, etc). Hopefully Nystrom and other DP admins are paying careful attention to what dailypaul.com url's (and maybe tinyurl links, etc, since they can point anywhere) they're clicking on.
More advanced version of
More advanced version of "Ping Spamming" for a higher speed internet
Me and a few of my friends used to spam some of my schoolmates with "Ping (IP address)" commands to kick those people off back when 28 and 33.6kb connections were the standard, back in 1995ish
Yeah, but now we are talking
Yeah, but now we are talking about hundreds of thousands of connections per minute. Not one connection that bounces someone.
If you've never read the story of Blue Security vs. Spammers, it's actually a pretty good story. Esentially, a company came out with a tool that would fight spam. The tool would pretty much send reply requests to the sender in essence spamming the spammer.
So a war broke out between a well known spammer and Blue Security. At one time it was reported that the spammer was paying a million dollars a week to have a DDOS attack against Blue Security.
In the end.. the attacker won.
Here is part 3 of 3 of a good story about bots and this particular incident on MSNBC.
http://redtape.msnbc.com/...
http://www.wired.com/scie...
http://blogs.washingtonpo...
Addition
Err.. I can't edit my reply, but I wanted to add this:
The server that they are talking about is probably the application that controls the individual infected computers on a botnet. If you've ever played with that kind of thing, a botnet has two components. The server and the client. The client is installed on the victim's machine and the server is used to control the client. You can do everything from monitor websites and keystrokes, to take screenshots, activate webcams, send spam, or pretty much anything else you want.
This stuff is all fairly common and you can download botnet creation tools, their associated servers and all the source code to compile your very own bot in just a matter of a few minutes.
Let this be a lesson to everyone. ALWAYS use virus protection. And not just one either. Use several.
Good
Good explanation.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
This is getting into
This is getting into dangerous territory. Advertisers will accuse the Daily Paul of astroturfing.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
The problem is that if it's
The problem is that if it's too large of an attack, it will shut the site down and/or cost Nystrom $$$$.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
Sorry Arrest.
That is not true at all.
Umm.... yes it is. If 4chan
Umm.... yes it is. If 4chan initiates a DoS attack, it could shut down the site. This is a serious matter.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...
Ok, less than 15 minutes before predicted time
who has some good threads ready for bumping just in case? I have 12 ready to go.
Mike, if you'll read through
Mike, if you'll read through the whole post (which has been updated) you'll see that they decided to delay it for 24 hours. Some people might still attack today though.
****************
CITIZEN'S ARRESTS on McCain/Obama
and all other criminal politicians NOW!!!!
http://www.dailypaul.com/...