Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This is great advice. At a poker startup I worked at the most important thing was our relationship with the pipe owner.

It can be expensive to get them to act but for a poker site it's a lot cheaper than loosing hands per minute.

We also paid a lot of money for boxes at our end that did real time traffic analysis for various attack vectors. Expensive but again cheaper than loosing money.



Was it necessary at some point? I'm not being sarcastic, just interested.


At first it was all completely unnecessary no one had ever heard of the product.

However as it started to climb the poker ranks and get more players the early start we had made meant that the network guys were ahead of the hackers/criminals from the start. We had developed a good relationship with our providers (of bandwidth and hardware) and internally stress tested the system.

By the time I left it was WELL worth it. A reasonable sized poker site can easily rake a million dollars a week which is a revenue stream worth defending.

My advice would be that if you think your are going to be vulnerable invest early, make mistakes early, when the big boys come at best you have hours to respond. Investing doesn't have to mean buying the most expensive hardware but planning for how much you can afford to loose will put things into perspective. Deciding how much to spend of defence is important and must be continually reviewed as hardware/software change and new threats pose themselves.

It's also important to remember that the big attacks like DDos are annoying but can normally be defended against. Intrusion detection is as important but much harder to defend against.


Typically anybody that makes more than a few million per month on the internet and is not under the protection of the authorities for stuff like this has by now found out about the dark side of the net.


What about streaming video sites? Has ww seen any distributed attacks on 1935?

I am running Wowza currently, and worry about this.


We have not seen any attacks on the video infrastructure but we're small fry. Let me ask a much larger site using wowza and get back to you on that one.


Thanks! Look forward to it.


Ok, here is the answer:

"If there has been we haven’t noticed. Taking down one wowza server wouldn’t cause us any problems. They would have to take down 5+ servers for us to notice."


losing


thank you, unfortunately I can't edit the post now. You know what I meant though.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: