Re: Re: Using the DHT to find download sources

Michael Rogers <[email protected]>
Newsgroups gmane.network.gnutella.devel
Message-ID <[email protected]>
pwang708 wrote:
> Good point! I think maybe we also need to add something like an attack
> model to our requirement etc list.

This is an excellent idea. Let's try to come up with a list of attack
scenarios. A couple of suggestions:

1) Dummy files - the attacker wants to make certain files hard to
download by offering dummy files with similar names

2) Keyword spam - the attacker wants to make certain keywords hard to
search for by flooding requesters with bogus results

3) Content spam - the attacker wants users to download certain files
(advertisements, trojans) and responds to many/all searches with those files

Possible defences:

A) Credence

B) Regularly updated blacklists of IP ranges, file sizes and file hashes

C) Searching our friends and friends-of-friends first

Any others?

> BTW, The default spam replies can be recognized because they don't
> change? Mutating spam replies so that they look different should not
> be too hard... 

True. To some extent it's an arms race - we can't win but we can try to
stay ahead. :)

Cheers,
Michael
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.