Hacker News new | ask | show | jobs
by dec0dedab0de 1226 days ago
Wouldn't it be nice if all the ISPs got together and refused to route traffic from networks that ignored abuse complaints?

I suppose that would put cloudflare and anyone else doing ddos mitigation out of business.

When I worked at a small ISP and we would get complaints, we would block the user until we could reach them. Then let them online long enough to update their antivirus. I can't imagine Comcast committing to that, but it would be nice.

3 comments

I'd love to see that, but I don't think it'd work because most people aren't capable enough to disinfect their machines and you can't just block their access to the internet.

I expect locked down devices like cell phones and tablets to be less problematic in that regard (but maybe that's not true at all), so maybe the home-botnet-issue will resolve itself as more and more people stop using personal computers?

I have no way to tell how the big Cloudproviders actually handle it. I've occasionally reported persistent phishing campaigns to SES & similar providers and never really got a reply. I've reported a DDOS to Azure and it took them 18 days or so to say "thanks, we'll forward it". If Microsoft and Amazon don't respond appropriately, how can we expect smaller ISPs to handle that?

> you can't just block their access to the internet

Or maybe that's the best thing you can do for them, perhaps preventing them from revealing even more passwords etc to the attacker.

> [...] maybe the home-botnet-issue will resolve itself as more and more people stop using personal computers?

Maybe – if there wasn't IoT/smart home devices...

Ah, yeah, I forgot about those. And with remotely triggered updates, you don't even need to get past the router to infect some fridge, you just take over the manufacturer's site (or wait until they let the domain expire...) and have the fridges come to you.
> Wouldn't it be nice if all the ISPs got together and refused to route traffic from networks that ignored abuse complaints?

Is port scanning abuse? I don't think so but some babies on mailing lists love to spend all of their time writing handwritten abuse letters about it.

>Wouldn't it be nice if all the ISPs got together and refused to route traffic from networks that ignored abuse complaints?

Jesus, this reads like a prequel to Black Mirror episode.