Jump to content

Anti-Piracy Outfits Launch Attack on BitTorrent Protocol


NelsonG

Recommended Posts

[img]http://torrentfreak.com/images/danger.jpg[/img]According to the Computer Emergency Response Team ([url="http://en.wikipedia.org/wiki/CERT_Polska"]CERT[/url]) in Poland, BitTorrent’s [url="http://en.wikipedia.org/wiki/Micro_Transport_Protocol"]uTP protocol[/url] is under attack.

The security experts have observed a massive spike in activity compared to 2011, originating from centralized locations in Russia, Canada, China, Australia and the USA.

The CERT group operates a system that scans for online threats and the attack on BitTorrent triggered several of their honeypot sensors. These attack sources send data packages that appear to be legitimate, but the IP-addresses they send are forged.

The security researchers, who say these poisoning attacks are happening on a massive scale, observe that they are targeted at specific BitTorrent swarms sharing Russian movie releases.

One of the likely explanations for these poisoning attacks is that anti-piracy outfits are utilizing them to “protect” their clients’ movies. For example, these outfits could overload BitTorrent swarms with corrupt data or “disconnect” messages while masquerading as legitimate downloaders.

This is exactly what the [url="http://torrentfreak.com/microsoft-funded-startup-aims-to-kill-bittorrent-traffic-120513/"]Microsoft funded startup Pirate Pay[/url] appears to be doing although other companies may also use similar methods. A company called ICM is currently listed as [url="http://ruprotect.com/en/movies/poster/all/2012/"]“protecting”[/url] the Russian film that was the subject of the attacks identified by CERT.

The security researchers don’t make any conclusive claims about the origins of the attacks, but they do note that anti-piracy groups are a possible source.

“At least one interest group that would benefit from uTP poisoning is easy to point at: multimedia companies and their subcontractors. Conduction of this kind of campaign by these institutions wouldn’t be precedent. It’s also possible that generated traffic is used for BitTorrent network mapping and data gathering for later use in other projects,” CERT comments.

Perhaps of even more interest, CERT also notes that the poisoning attack, or anomaly as they call it, may very well breach cybersecurity law.

“[The attacks] produce visible disruption in IT systems and large amounts of our false-positive high-level alerts is a good proof. In terms of Polish law, European Convention on Cybercrime and U.S. Codes (and probably many other sources of domestic law) legality of process producing the anomaly is questionable,” the security experts note.

In other words, the techniques these anti-piracy outfits appear to be using to prevent people from sharing copyrighted movies could be illegal. If that is the case then the movie companies who hire these anti-piracy outfits may be complicit in cybersecurity crimes.

That would be a problem.

TorrentFreak contacted the CEO of the Microsoft-funded Pirate Pay for a comment on the legality of his service, but we are yet to receive a reply. More details about the specifics of the attacks [url="http://www.cert.pl/news/5365/langswitch_lang/en"]are available[/url] on the CERT website.

Source: [url="http://torrentfreak.com/anti-piracy-outfits-launch-attack-on-bittorrent-protocol-120519/"]Anti-Piracy Outfits Launch Attack on BitTorrent Protocol[/url]

[url="http://torrentfreak.com/?flattrss_redirect&id=51237&md5=d9dddb55502c8bd34d1258af59a2349d"][img]http://torrentfreak.com/wp-content/plugins/flattr/img/flattr-badge-large.png[/img][/url]

[url="http://feed.torrentfreak.com/~ff/Torrentfreak?a=VufTw4yZ5Zw:Y14TLEoH7Zs:yIl2AUoC8zA"][img]http://feeds.feedburner.com/~ff/Torrentfreak?d=yIl2AUoC8zA[/img]</img>[/url] [url="http://feed.torrentfreak.com/~ff/Torrentfreak?a=VufTw4yZ5Zw:Y14TLEoH7Zs:D7DqB2pKExk"][img]http://feeds.feedburner.com/~ff/Torrentfreak?i=VufTw4yZ5Zw:Y14TLEoH7Zs:D7DqB2pKExk[/img]</img>[/url][img]http://feeds.feedburner.com/~r/Torrentfreak/~4/VufTw4yZ5Zw[/img]

[url=http://feed.torrentfreak.com/~r/Torrentfreak/~3/VufTw4yZ5Zw/]View the full article[/url]

Link to comment
Share on other sites

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Our picks

    • Wait, Burning Man is going online-only? What does that even look like?
      You could have been forgiven for missing the announcement that actual physical Burning Man has been canceled for this year, if not next. Firstly, the nonprofit Burning Man organization, known affectionately to insiders as the Borg, posted it after 5 p.m. PT Friday. That, even in the COVID-19 era, is the traditional time to push out news when you don't want much media attention. 
      But secondly, you may have missed its cancellation because the Borg is being careful not to use the C-word. The announcement was neutrally titled "The Burning Man Multiverse in 2020." Even as it offers refunds to early ticket buyers, considers layoffs and other belt-tightening measures, and can't even commit to a physical event in 2021, the Borg is making lemonade by focusing on an online-only version of Black Rock City this coming August.    Read more...
      More about Burning Man, Tech, Web Culture, and Live EventsView the full article
      • 0 replies
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
×
×
  • Create New...