UltraDNS service knocked offline by attack

NeuStar confirms 'significant' denial of service attack on Tuesday morning

NeuStar confirmed that its UltraDNS managed DNS service was knocked offline for several hours Tuesday morning by a distributed denial of service attack.

``Early this morning, our monitoring systems detected a significant denial of service attack, which affected a small subset of our customers, in some cases for as long as a few hours,'' the Reston, Va. company said in a statement. ``While we continue to investigate the cause, the extent, and the duration of the attack, service was completely restored by 10 a.m. EST.'' 

NeuStar is a leading provider of high-availability DNS services to e-retailers including J.Jill and Diamond.com as well as high-tech companies such as Oracle and Juniper. 

Competitor Dynamic Network Services blogged about the UltraDNS outage earlier today, asserting that it affected Amazon.com, SalesForce.com, advertising.com and Petco.com.

``We saw some funkiness starting over in Europe, and we were seeing that resolution for Amazon.com was failing,'' says Dynamic Network Services CEO Jeremy Hitchcock. ``It looks like a pretty large outage that was affecting UltraDNS customers. It started this morning around 8 a.m, and for a two-hour period traffic was very significantly affected. Now it looks like things have settled down.''

Hitchcock said his company's Dynect Platform monitoring system saw heavy packet loss on UltraDNS name servers, with as much as 50% to 70% of responses being dropped. 

``It's a pretty significant event to have that kind of wide-scale disruption,'' Hitchcock added.

NeuStar is a leading provider of Internet infrastructure services. In addition to providing its UltraDNS suite of managed DNS services, NeuStar is the registry for the .biz and .us domains, and it provides telephone number look-up services for carriers in North America.

NeuStar has been a leader in the push to deploy security extensions to the DNS infrastructure through an emerging standard dubbed DNSSEC. 

However, DNSSEC doesn't address the problem of denial of service attacks. Instead, DNSSEC prevents hackers from hijacking Web traffic and redirecting it to bogus sites. Denial of service attacks, on the other hand, occur when a hacker disables a Web site by flooding it with bogus requests usually sent from a bot network.

More about: Amazon, Amazon.com, Juniper, Leader, Leader Computers, NeuStar, Oracle, Petco, Salesforce.com, Tuesday Morning, UltraDNS
References show all

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
Users posting comments agree to the Computerworld comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Related Coverage
Related Whitepapers
Latest Stories
Community Comments
Tags: dns flaw
Whitepapers
All whitepapers
Sign up now to get free exclusive access to reports, research and invitation only events.
Featured Download
/downloads/product/21/clamwin-free-antivirus/

ClamWin Free Antivirus

ClamWin Free Antivirus is an open source GPL virus scanner for Microsoft Windows 7 / Vista / XP / Me / 2000 / 98 and ...

Computerworld newsletter

Join the most dedicated community for IT managers, leaders and professionals in Australia