词条 | High Orbit Ion Cannon |
释义 |
| name = High Orbit Ion Cannon | screenshot = HOIC_INTERFACE.png | caption = HOIC running on Windows 10 | programming language = Visual Basic, C# | operating system = Windows, OS X, Linux{{source?|date=January 2019}} | size = 1.8 MB | language = English | genre = Network stress-testing | license = Public domain | website = {{URL|sourceforge.net/projects/high-orbit-ion-cannon/}} }}High Orbit Ion Cannon (HOIC) is an open-source network stress testing and denial-of-service attack application designed to attack as many as 256 URLs at the same time. It was designed to replace the Low Orbit Ion Cannon which was developed by Praetox Technologies and later released into the public domain. The security advisory for HOIC was released by Prolexic Technologies in February 2012.[1][2] DevelopmentHOIC was developed during the conclusion of Operation Payback by the hacktivist collective Anonymous.[3] As Operation Payback concluded there was massive pressure on the group from law enforcement agencies, which captured and prosecuted more than 13 individuals connected with the group.[4][5] This forced many members of the group to rethink their strategies and subsequently this part of the group launched Operation Leakspin.[6] However a large part of Anonymous remained focused on launching opt-in DDoS attacks. However the Low Orbit Ion Cannon was not powerful enough to launch attacks with such a limited number of users. Therefore, HOIC was designed to remedy this with the ability to cause HTTP Flood with a low number of user agents with as few as 50 users being required to successfully launch an attack, and co-ordination between multiple users leading to an exponential increase in the damage.[7][8] HOIC was the first tool of its kind to have support for the so-called "booster files", configurable VBscript modules that randomize the HTTP headers of attacking computers, allowing thousands upon thousands of highly randomized combinations for user agents.[9] Apart from allowing user agents to implement some form of randomization countermeasures the booster files can and have been used to increase the magnitude of the attack.[9] NomenclatureHOIC and its predecessor, the LOIC, are named after an ion cannon, a fictional directed-energy weapon described as firing beams of ions from a space-based platform onto Earth-based targets. Although ion cannons appear in many movies, television shows, and video games that have a science fiction-based setting, the ones depicted in the Command & Conquer series of video games are considered to be the inspiration for the graphics on the software's GUI and website.[10] UseSimply described, HOIC is a program for sending HTTP POST and GET requests at a computer under attack, that uses a lulz-inspired graphical interface.[12] HOIC primarily performs a denial-of-service (DoS) attack and a DDoS attack when co-ordinated by multiple individuals. The denial-of-service (DoS) attack on the target URL is accomplished by sending excessive traffic in an attempt to overload the site and bring it down. This basic version of the attack can be customized by using the booster files which follow the VB 6 mixed with VB .NET syntax. In addition, HOIC can simultaneously attack up to 256 domains, making it one of the most versatile tools for hackers who are attempting to co-ordinate DDoS attacks as a group.[11] The minimalist GUI of the tool makes it user friendly and easy to control. The basic routine of an attack is to input the URL of the website which is to be attacked, set the power option on low, medium or high. The power option sets the request velocity with low at two requests per second, medium at four and high at eight requests per second. Then a booster file is added which uses .hoic extension to define dynamic request attributes, launch attacks on multiple pages within the same website and help evade some defense filters. The attack is then launched by pressing the red button in the GUI labelled as "Fire Teh Lazer".[12] LimitationsThe basic limitation of HOIC is that it requires a coordinated group of users to ensure that the attacks are successful. Even though it has allowed attacks to be launched by far fewer users than the older Low Orbit Ion Cannon, HOIC still requires a minimum of 50 users to launch an effective attack and more are required to sustain it if the target website has protection.[13] Another limiting factor is the lack of anonymizing and randomizing capability. Even though HOIC should, in theory, offer anonymizing through the use of booster files, the actual protection provided is not enough. Furthermore, anonymizing networks such as TOR are not capable of handling the bandwidth of attacks generated by HOIC. Any attempt to launch an attack using the TOR network will actually harm the network itself.[14] However, Anonymous members routinely use proxy servers based in Sweden to launch their attacks. It has been speculated that this is due to the notion that Sweden may have stricter internet privacy laws than the rest of the world.[14][15] LegalityPrimarily, HOIC has been designed as a stress testing tool and can be lawfully used as such to stress test local networks and servers provided the person initiating the test has authorization to test and as long as no other networks, servers, clients, networking equipment or URLs are disrupted.[16] HOIC can also be used to perform distributed denial-of-service attacks, which are illegal under various statutes. The Police and Justice Act 2006 of the United Kingdom amended the Computer Misuse Act 1990, and specifically outlawed denial-of-service attacks and set a maximum penalty of 10 years in prison.[17] In the United States, denial-of-service attacks may be considered a federal crime under the Computer Fraud and Abuse Act with penalties that include up to ten years of imprisonment. In 2013 criminal charges were brought against 13 members of Anonymous for participating in a DDoS attack against various websites of organizations including the Recording Industry Association of America, the Motion Picture Association of America, the United States Copyright Office of the Library of Congress, Visa, MasterCard, and Bank of America. They were charged with one count of "conspiracy to intentionally cause damage to a protected computer" for the events that occurred between September 16, 2010 and January 2, 2011.[18] DDoS attacks are federal offenses in the United States and are prosecuted by the Department of Justice under USC Title 18, Section 1030.[19] In 2013, Anonymous petitioned the United States government via We the People, demanding that DDoS attacks be recognized as a form of virtual protest similar to Occupy protests.[20] CountermeasuresDDoS mitigation usually works on the principle of distribution, which is basically intelligent routing of traffic to avoid congestion and prevent overload at a single URL. Other methods to counter DDoS include installation of intrusion prevention system (IPS) and intrusion detection system (IDS).[21]First use in attacksAnonymous were the first group to utilize High Orbit Ion Cannon publicly.{{when|date=September 2016}} After Megaupload, a file-sharing website, was shut down after federal agents raided their premises, Anonymous launched an attack against the website of the US Department of Justice. As the DOJ website went offline Anonymous claimed success via twitter, saying "One thing is certain: EXPECT US! #Megaupload".[22] Over the course of the next few hours, several other websites were knocked offline and kept offline. These included websites belonging to the Recording Industry Association of America (RIAA), the Motion Picture Association of America (MPAA) and the BMI.[23] Finally, as the day drew to a close, the website belonging to the FBI was hit repeatedly before it ultimately succumbed to attacks and acquired a “Tango Down” status. Anonymous claimed that it was "the single largest Internet attack in its history", while it was reported that as many as 27,000 user agents were taking part in the attack.[24][25]See also{{columns-list|colwidth=18em|
}} References1. ^{{cite web|url=http://www.stateoftheinternet.com/resources-web-security-threat-advisories-2012-high-orbit-ion-cannon.html |title=High Orbit Ion Cannon (HOIC) Threat Advisory |publisher=stateoftheinternet.com |date=23 February 2012 |accessdate=18 April 2015}} 2. ^{{cite press release |publisher=Prolexic Technologies |via=PRWeb |title=Prolexic Issues Threat Advisory Outlining DDoS Protection Strategies for High Orbit Ion Cannon; Latest Stealth Attack Tool Targets Hundreds of URLs Simultaneously |url=http://www.prweb.com/releases/2012/2/prweb9221167.htm |date=23 February 2012 |accessdate=18 April 2015}} 3. ^{{cite web|url=http://security.radware.com/knowledge-center/DDoSPedia/hoic-high-orbit-ion-cannon/|title=Definition of HOIC |publisher=radware.com |date=2012-09-27 |accessdate= 2015-04-18}} 4. ^{{cite news|last1=Curtis|first1=Sophie|title=Who are the most notorious hacking groups?|url=https://www.telegraph.co.uk/technology/internet-security/11371524/Who-are-the-most-notorious-hacking-groups.html |accessdate=18 April 2015 |date=27 January 2015}} 5. ^{{cite news|title=Anonymous busted: 13 hacktivists indicted over Operation Payback |url=http://rt.com/usa/anonymous-operation-payback-indictment-704/|accessdate= 2015-04-18|date= 3 October 2013}} 6. ^{{cite web|first=Sean |last=Bonner |url=http://www.boingboing.net/2010/12/09/anonymous-stops-drop.html |title=Anonymous Stops Drop |work=Boing Boing |date=9 December 2010 |accessdate=18 April 2015}} 7. ^{{cite web|url=https://gizmodo.com/5883146/what-is-hoic|title=What is HOIC |publisher=Sam Biddle |date=18 February 2012 |accessdate=18 April 2015}} 8. ^{{cite web|url=http://www.kotaku.com.au/2014/12/how-ddos-attacks-work-and-why-theyre-so-hard-to-stop/|title=How DDoS Attacks Work, And Why They're So Hard To Stop |work=Kotaku |publisher=Gawker Media |first=Jason |last=Schreier |date=31 December 2014 |accessdate=18 April 2015}} 9. ^{{cite web |url=https://www.rsaconference.com/writable/presentations/file_upload/sec-w04_final.pdf |title=DDoS ATTACKS: MOTIVES, MECHANISMS AND MITIGATION |publisher=RSA Conference |first=Stephen |last=Gates |date=15 May 2013 |accessdate=18 April 2015}} 10. ^{{cite web|publisher=AirDemon.net |title=Low Orbit Ion Cannon |via=Archive.org |url=http://www.airdemon.net/loic.html |date=27 September 2012 |accessdate=18 April 2015 |deadurl=yes |archiveurl=https://web.archive.org/web/20120927082809/http://www.airdemon.net/loic.html |archivedate=September 27, 2012 }} 11. ^{{cite web|url=http://www.symantec.com/connect/blogs/high-orbit-vs-low-orbit-ion-cannonglimps-some-hacking-techniques |title=Glimpse into some hacking techniques|publisher=Avkash K |date=2012-03-15 |accessdate= 2015-04-18}} 12. ^{{cite book|last1=Barnett|first1=Ryan C|title=Web Application Defender's Cookbook: Battling Hackers and Protecting Users|date= 4 January 2013|publisher=John Wiley & Sons|isbn=978-1-118-41705-8|page=346|url=https://books.google.com/books?id=flC9dFFLWIsC&pg=PT346}} 13. ^1 {{cite press release |url=http://www.prolexic.com/kcresources/prolexic-threat-advisories/prolexic-threat-advisory-hoic-031212/Prolexic_Threat_Advisory_HOIC_A4_052612.pdf |title=Threat: High Orbit Ion Cannon v2.1.003 |publisher=Prolexic Technologies |date=16 February 2012 |accessdate=6 April 2015}} 14. ^1 2 {{cite news |first=Sean |last=Gallagher |work=Ars Technica |publisher=Condé Nast |title=High Orbits and Slowlorises: understanding the Anonymous attack tools |url=https://arstechnica.com/business/2012/02/high-orbits-and-slowlorises-understanding-the-anonymous-attack-tools/2/ |date=16 February 2012 |accessdate=6 April 2015}} 15. ^{{cite web |title=Online Privacy Law: Sweden |url=https://www.loc.gov/law/help/online-privacy-law/sweden.php|website=Law Library of Congress |accessdate=18 April 2015}} 16. ^{{cite web|url=http://www.pcauthority.com.au/Feature/401392,hackers-kit-bag-the-tools-that-terrorise-the-internet.aspx|title=Hackers' kit bag: the tools that terrorise the internet|publisher=James H. Hamlyn-Harris|date=2015-03-09 |accessdate=2015-04-18}} 17. ^Espiner, Tom (November 10, 2006). "U.K. outlaws denial-of-service attacks". CNET News 18. ^{{cite web|url=http://www.pcworld.com/article/2052360/us-indicts-13-anonymous-members-for-ddos-attacks.html|title=US charges 13 Anonymous members for DDoS attacks |publisher=PCWorld|date=2013-08-16 |accessdate=2016-02-29}} 19. ^{{cite web|url=http://www.gpo.gov/fdsys/pkg/USCODE-2010-title18/html/USCODE-2010-title18-partI-chap47-sec1030.htm |title=United States Code: Title 18,1030. Fraud and related activity in connection with computers | Government Printing Office |publisher=www.gpo.gov |date=2002-10-25|accessdate=2015-04-18}} 20. ^{{cite news|url=http://www.huffingtonpost.com/2013/01/12/anonymous-ddos-petition-white-house_n_2463009.html |title=Anonymous DDoS Petition: Group Calls On White House To Recognize Distributed Denial Of Service As Protest |publisher=HuffingtonPost.com |date=2013-01-12|newspaper=Huffington Post |last1=Jauregui |first1=Andres }} 21. ^{{cite web|url=http://tools.cisco.com/security/center/viewAlert.x?alertId=28879|title=High Orbit Ion Cannon Distributed Denial of Service Tools |publisher=Cisco|date=2012-02-16 |accessdate=2015-04-18}} 22. ^{{cite news|last1=Segall|first1=Laurie|title=Anonymous strikes back after feds shut down piracy hub Megaupload|url=http://money.cnn.com/2012/01/19/technology/megaupload_shutdown/|accessdate=18 April 2015|agency=CNN|date=January 20, 2012|authorlink=Laurie Segall}} 23. ^{{cite news|last1=Vaughan-Nichols|first1=Steven J.|title=How Anonymous took down the DoJ, RIAA, MPAA and Universal Music Websites|url=http://www.zdnet.com/article/how-anonymous-took-down-the-doj-riaa-mpaa-and-universal-music-websites/|accessdate=18 April 2015|agency=zdnet.com|date=January 20, 2012}} 24. ^{{cite news|title=Anonymous Takes Down FBI, RIAA, DOJ and White House Following Megaupload Closure|url=http://news.softpedia.com/news/Anonymous-Takes-Down-FBI-RIAA-DOJ-and-White-House-Following-MegaUpload-Closure-247641.shtml|accessdate=18 April 2015|agency=Sofpedia}} 25. ^{{cite news|last1=Kovacs|first1=Eduard|title=27,000 Computers Participating in OpMegaupload DDoS Attack (Exclusive)|url=http://news.softpedia.com/news/27-000-Computers-Participating-in-OpMegaupload-DDoS-Attack-Exclusive-247709.shtml|accessdate=18 April 2015|agency=Softpedia|date=January 20, 2012}} External links{{Commons category|High Orbit Ion Cannon}}
4 : Denial-of-service attacks|Free software|Public-domain software|Public-domain software with source code |
随便看 |
|
开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。