Amazon Responds About SIP Attacks From EC2
On April 18th Amazon finally responded publicly with respect to the SIP attacks recently suffered from hosts within their EC2 service. Their response comes in the form of an informational security bulletin posted to their AWS Security Center.
There have been some recent discussions about SIP brute force attacks originating from Amazon EC2. We can confirm that several users reported SIP brute force attacks originating from a small number of Amazon EC2 instances about a week ago. It appears these attacks were designed to exploit security vulnerabilities in the SIP protocol. There is nothing specific about this attack that requires Amazon EC2. It was a brute force attack that could be launched from any computer on any network.
The volcanic eruption in Iceland, and its associated ash cloud, has certainly been a major topic of discussion this past week. My brother and his wife were caught in France on vacation. Their two week skiing vacation has become three weeks, quite unexpectedly.
When last we left this story our protagonist had returned the Cisco AP to BUY.COM leaving le maison du Graves without functional wifi for about two weeks. Fortunately I was out of town a lot during that period so it wasn’t much of an inconvenience. If anything it gave me some time to evaluate my options regarding replacement gear.
There are myriad inexpensive consumer routers available that include wifi functionality, but far fewer freestanding wifi access points (AP.) I surmise that this is because every broadband connected home needs a router and wants a wifi AP, so a converged device is the most affordable approach to this marketplace. Yet in many ways it’s less than ideal.
This is part 2 in the continuing saga of my fight with replacing a dead Netgear WNR-2000 that had served a my wifi AP. Please recall that I just RMA’d the Cisco WAP4410N that was to be its replacement.