Is anyone willing to pay? For the victims: DDoS is very expensive. Direct loss of business. Collatoral damage for edge ISPs. Often just disconnect the victim. Scrubbing solutions work, up to a point, for dumb attacks at lower bandwidths. Victim bears the cost. For the source ISPs: fairly significant costs. Manual cleanup of bots is expensive. Many ISPs don’t even go looking for bots on their networks. For transit ISPs: often just more paying packets. |