Re: Re: Using the DHT to find download sources
Michael Rogers <[email protected]>
| Newsgroups | gmane.network.gnutella.devel |
|---|---|
| Message-ID | <[email protected]> |
pwang708 wrote: > Good point! I think maybe we also need to add something like an attack > model to our requirement etc list. This is an excellent idea. Let's try to come up with a list of attack scenarios. A couple of suggestions: 1) Dummy files - the attacker wants to make certain files hard to download by offering dummy files with similar names 2) Keyword spam - the attacker wants to make certain keywords hard to search for by flooding requesters with bogus results 3) Content spam - the attacker wants users to download certain files (advertisements, trojans) and responds to many/all searches with those files Possible defences: A) Credence B) Regularly updated blacklists of IP ranges, file sizes and file hashes C) Searching our friends and friends-of-friends first Any others? > BTW, The default spam replies can be recognized because they don't > change? Mutating spam replies so that they look different should not > be too hard... True. To some extent it's an arms race - we can't win but we can try to stay ahead. :) Cheers, Michael