Originally posted by Stoic
If it's a DOS, or DDOS attack, there is no stopping it. It's the Juggernaut of viruses. The scary part is that it's so simple, even a child could bring a major network down. Scary huh? Makes you wonder how sophisticated the people that attacked Sony were.
There are very expensive Firewall/Border Router/Heuristic Intrusion Prevention and Detection appliances available out there that could be deployed to prevent these DDoS attacks from being viable.
Here's the problem: the companies do not want to spend that much on infrastructure. I know for a fact Cisco sells a device that can handle a significant fraction of all internet traffic, at once, that fits my description of an appliance, above. I think it cost several hundred thousand or even millions of dollars (Cisco doesn't list the price) but devices like those do exist.
If a DDoS attack is occurring, the services being attacked and the security appliances in place must be able to handle the attack, shut it down quickly, and block traffic from that botnet. But that costs money...and big businesses are all about saving money.