Sky’s BlogSky’s Blog

Archive for January, 2009

EDoS [Economic Denial of Sustainability] attacks

by Sky on Jan.26, 2009, under Security, Software and online tools, Sustainability

cloudA Denial of Service (DoS) attack is one in which a server or service is “overwhelmed” by traffic and consequently either disabled or made unavailable to its customers. Typically the effect on the target of a DoS attack is a loss of business, or in the less critical cases, just failure to get his/her message out.

However, cloud computing allows us to scale our servers up and up in order to service greater numbers of requests for service. This opens a new avenue of approach for attackers, which originally was labeled an Economic Denial of Sustainability attack by Christofer Hoff (November 2008), with a follow-up just recently. (I was introduced to the concept by Reuven Cohen’s description published just today.)

In short, if your cloud-based service is designed to scale up automatically (which some like Amazon EC2 are), then an attacker can grief you economically by sending a huge number of (automated) requests that appear on the surface to be legitimate, but are actually fake. Your costs will rise as you scale up, using more and/or larger servers (automatically) to service those fake requests. Ultimately you will reach a point where your costs overtake your ability to pay – a point at which your economic sustainability becomes questionable.

Ouch!

[The EDoS concept applies primarily to cloud-based services and not to people who own their own servers, because if you own your own servers and are the target of a DoS attack, you don't immediately and automatically scale your operation up to a larger size, so the attack doesn’t immediately cost you money. It’s only when the scaling-up is automated and there’s no ceiling that you run the risk of economic damage.]

Post to Twitter Tweet This Post

1 Comment more...

Tibet in Exile – a story

by Sky on Jan.21, 2009, under Debris

Falling Through the RoofThubten Samphel, information secretary (of DIIR- the Department of Information and International Relations) of the Tibetan government in exile in India, has written a fictional account of young Tibetan exiles living in India, entitled Falling through the Roof. —That’s a reference to Tibet as the “roof of the world.” The book isn’t yet available outside of India. It looks like it’s an in-depth introduction to what it feels like to fall out of your native land and end up being educated and living in a foreign culture.

(continue reading…)

Post to Twitter Tweet This Post

1 Comment more...

Jerry’s “Law of Convenience”

by Sky on Jan.17, 2009, under Communicating

Jerry Michalski on safari

I guess them that passes the laws first will get the kudos. So here’s some credit, and honestly if you google around you won’t find this law anywhere else. This is so simple yet it’s the basis of everything we do (and many things we overlook) every day online… Jerry Michalski’s “Law of Convenience.”

Every additional step that stands between people’s desires and the fulfillment of those desires greatly decreases the likelihood that they will undertake the activity.

Jerry reminds us that even one little impediment – one additional click; an additional password; a confirmation – can stand in the way of a product’s being used or not. Ya, everybody already knows this, but a reminder every once in a while is welcome because we sometimes get overly-impressed with the features of the products we’re designing and think that people will love them so much they won’t mind all of the extra steps and clicks.

(continue reading…)

Post to Twitter Tweet This Post

3 Comments :, more...

Small slices of computing (Slicehost) require small MySQL and Apache

by Sky on Jan.14, 2009, under Technology and geeky stuff

MySQL{Geeks off the starboard bow, matey, arrrrrr!}

I’ve mentioned before that I’m bringing up web sites on Slicehost. It’s a cloud computing environment and that means I don’t know and don’t care exactly what or where the server is, and I only buy as much as I need.

Apache Software FoundationIt’s an interesting experience because in the rest of my life I’m constantly expanding my (personal) computers by adding storage and processor power so they can run faster and faster, but in the case of cloud computing, instead, I’m scaling down the pieces of software so they can run more efficiently in a small “computer” instead. (continue reading…)

Post to Twitter Tweet This Post

1 Comment :, , , , more...

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!

 

Related sites