TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

GitHub is getting DDoSed again

94 点作者 mathias大约 12 年前

18 条评论

jetsnoc大约 12 年前
It may be time for GitHub to build out multiple availability data centers and use BGP as an anycast tool. We do this. I have public facing IPv4 space that is announced from multiple facilities. Having an IP address hosted from multiple facilities is a powerful tool. This allows providers to hit our datacenter through the least amount of ASN routes. We original did this to minimize latency and create faster regional transaction processing. As an added benefit - DDoS traffic also gets routed to the nearest facility "load balancing" a DDoS so that it only affects a single facility or it splits up the 10gbps of traffic among many facilities if it is coming from many sources. O'Reilly's BGP book has a great chapter on "Anycast."<p>From the sounds of it their architecture may not support this. If they had a SAN solution capable of replication to multiple data centers like HP LeftHand's product or a multiple master DRBD configuration they may be able to host github from multiple active datacenters and announce the block equally so that providers route traffic to them because their ASN is closest.<p>Who knows, maybe they do all of this?
评论 #5353585 未加载
DigitalSea大约 12 年前
This happened back in October a couple of days in a row. Who the heck is targeting Github and why? I wonder if these attacks are related to the Chinese hacking attacks that have been publicised lately?
评论 #5351482 未加载
评论 #5351480 未加载
评论 #5351477 未加载
评论 #5352048 未加载
评论 #5351714 未加载
评论 #5351594 未加载
评论 #5353923 未加载
gojomo大约 12 年前
There are people who suggest that a DDoS is just a 'digital sit in', a legitimate way for someone to air a grievance, if they think the targets (or world) haven't paid them enough attention.<p>This view makes DDoS seem more normal or even romantic/heroic, and spreads the tools/know-how more widely. So, pulling off a DDoS becomes a more plausible and attractive aspiration, for a larger set of surly people with marginal reasoning skills and destructive impulses.<p>The DDoS tactic should be rejected as dishonorable censorship and vandalism, no matter the cause under which it is launched.
评论 #5354374 未加载
评论 #5353236 未加载
eksith大约 12 年前
Are we sure it's a DDoS or is it some sort of massively distributed scrape of the repos? (Side-effect being DDoS regardless)<p>I'm starting to think this is some kind of grab for intellectual property; maybe even a targetting of private repos to somehow gain access.
评论 #5351834 未加载
评论 #5351835 未加载
naftaliharris大约 12 年前
Reading status.github.com over the last few weeks, I found it interesting how often little things were broken at Github. It's like every few days, a small part of the site is unavailable or the sysadmins are investigating this or that connectivity issue. I guess when you're as big as Github, keeping your site live and operational is completely nontrivial.
评论 #5353073 未加载
评论 #5353294 未加载
sixbrx大约 12 年前
I consider it evidence that when some punk figures out how to make a black hole, we're done for. No reason necessary.
评论 #5352220 未加载
shinuza大约 12 年前
Bitbucket at it again.
评论 #5351479 未加载
评论 #5351564 未加载
niggler大约 12 年前
Is it just me or has github been down a lot in the later months (moreso than a year ago)? DDoS or otherwise, it doesn't inspire confidence, especially for paid accounts (which I considered but ultimately decided to go with another solution)
评论 #5353493 未加载
yRetsyM大约 12 年前
Maybe they should use CloudFlare?
alexvr大约 12 年前
Good plan. When a site is DDoSed, encourage thousands of HN viewers to check it out :P
评论 #5352546 未加载
babuskov大约 12 年前
Hm, just a couple of days later after another potential security exploit is published... maybe they did not plug all the holes, and someone is trying to clone all private repositories as soon as possible... hogging the servers in the process.
评论 #5351869 未加载
leke大约 12 年前
Who would have the motivation to hack GitHub?
评论 #5351765 未加载
freddyduarte大约 12 年前
Meanwhile at Bitbucket... <a href="http://status.bitbucket.org/" rel="nofollow">http://status.bitbucket.org/</a>
评论 #5351896 未加载
nixarn大约 12 年前
Still not working, trying to load the page of a private repo, keeps loading and loading.
hawkw大约 12 年前
Who &#60;i&#62;does&#60;/i&#62; that?
badgar大约 12 年前
This is a pretty typical occurrence for a web service provider of their size. When is Github going to be able to not fail when targeted?
评论 #5351492 未加载
评论 #5351649 未加载
评论 #5351489 未加载
martinced大约 12 年前
If several countries, distribute across various continents, have managed to put in place three-strikes and six-strikes (not that I think it's good), it means that the one and foremost knee-jerking argument saying <i>"You can't do anything about DDoS because: [X] It's technically not realist"</i> is gone.<p>Technically now ISPs could throttle the bandwith (or even disallow net access) to zombies boxen used in DDoS attacks in all the countries applying "x-strikes" rules.<p>So there <i>may</i> be light at the end of the tunnel.<p>It's not exactly as if DDoS was a fatality and nothing could be done about it.
评论 #5352416 未加载
评论 #5351793 未加载
评论 #5354200 未加载
X4大约 12 年前
I think GitHub should add hardcore anti-scraping functionality. Even though I enjoy Opensource repositories, I wouldn't like some bot/govermnent or other evil to mess with all of our contributions to humanity in a way to defeat us.
评论 #5351746 未加载