<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: Who Ya Gonna Call?  **Updated**</title>
	<atom:link href="http://ddos.arbornetworks.com/2007/06/who-ya-gonna-call/feed/" rel="self" type="application/rss+xml" />
	<link>http://ddos.arbornetworks.com/2007/06/who-ya-gonna-call/</link>
	<description>A weblog dedicated to educating the community on security threats that matter</description>
	<lastBuildDate>Sun, 29 Jan 2012 02:23:23 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: R. Kerns</title>
		<link>http://ddos.arbornetworks.com/2007/06/who-ya-gonna-call/comment-page-1/#comment-29500</link>
		<dc:creator>R. Kerns</dc:creator>
		<pubDate>Mon, 18 Jun 2007 19:07:36 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2007/06/who-ya-gonna-call/#comment-29500</guid>
		<description>When they talk about this endeavor (BTW Operation Bot Roast is a terrible name because its too funny!) I have to wonder what exactly is supposed to happen upon notification that your box is a zombie? Articles are discussing that each Bot-owned box is its own miniature crime scene and can provide evidence to help catch the criminals behind them. But realistically how many people are going to allow their system to be inspected to gather any kind of evidence? 

Not to float the Arbot boat here but it seems more realistic to run honeynets and monitor/investigate bot activity that way. If you want to start to notify users that their machines are owned then thats all nice and well, but as stated when these users ask, &quot;How the hell do I fix it?&quot; they are not going to be satisfied when the FBI basically says &quot;Well we dont provide support we just do notification...&quot; Seems like a waste of time to me. Instead why not create some govt sponsored security apps that we can provide to the non-technical user community for free? 

Maybe I&#039;m just being negative but Bot Roast sounds like a waste of time and money to me. (Also what happens when they incorrectly inform ppl that their systems are owned?)</description>
		<content:encoded><![CDATA[<p>When they talk about this endeavor (BTW Operation Bot Roast is a terrible name because its too funny!) I have to wonder what exactly is supposed to happen upon notification that your box is a zombie? Articles are discussing that each Bot-owned box is its own miniature crime scene and can provide evidence to help catch the criminals behind them. But realistically how many people are going to allow their system to be inspected to gather any kind of evidence? </p>
<p>Not to float the Arbot boat here but it seems more realistic to run honeynets and monitor/investigate bot activity that way. If you want to start to notify users that their machines are owned then thats all nice and well, but as stated when these users ask, &#8220;How the hell do I fix it?&#8221; they are not going to be satisfied when the FBI basically says &#8220;Well we dont provide support we just do notification&#8230;&#8221; Seems like a waste of time to me. Instead why not create some govt sponsored security apps that we can provide to the non-technical user community for free? </p>
<p>Maybe I&#8217;m just being negative but Bot Roast sounds like a waste of time and money to me. (Also what happens when they incorrectly inform ppl that their systems are owned?)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: chris</title>
		<link>http://ddos.arbornetworks.com/2007/06/who-ya-gonna-call/comment-page-1/#comment-28584</link>
		<dc:creator>chris</dc:creator>
		<pubDate>Thu, 14 Jun 2007 22:45:03 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2007/06/who-ya-gonna-call/#comment-28584</guid>
		<description>Social Engineering DDoS on ISP Helpdesks Launched by FBI!, news @ 11 ;)</description>
		<content:encoded><![CDATA[<p>Social Engineering DDoS on ISP Helpdesks Launched by FBI!, news @ 11 ;)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paul</title>
		<link>http://ddos.arbornetworks.com/2007/06/who-ya-gonna-call/comment-page-1/#comment-28529</link>
		<dc:creator>Paul</dc:creator>
		<pubDate>Thu, 14 Jun 2007 18:45:25 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2007/06/who-ya-gonna-call/#comment-28529</guid>
		<description>Danny-
I notice you didn&#039;t include your phone number :-)
-paul</description>
		<content:encoded><![CDATA[<p>Danny-<br />
I notice you didn&#8217;t include your phone number :-)<br />
-paul</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Beware of BotNet Attack &#187; SELaplana</title>
		<link>http://ddos.arbornetworks.com/2007/06/who-ya-gonna-call/comment-page-1/#comment-28459</link>
		<dc:creator>Beware of BotNet Attack &#187; SELaplana</dc:creator>
		<pubDate>Thu, 14 Jun 2007 11:14:28 +0000</pubDate>
		<guid isPermaLink="false">http://asert.arbornetworks.com/2007/06/who-ya-gonna-call/#comment-28459</guid>
		<description>[...] SecurityFocus and Digital Daily Save to del.icio.us • Stumble It! • Submit To Netscape • Digg This!   Enter your email address toSubscribe: [...]</description>
		<content:encoded><![CDATA[<p>[...] SecurityFocus and Digital Daily Save to del.icio.us • Stumble It! • Submit To Netscape • Digg This!   Enter your email address toSubscribe: [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

