This link has been bookmarked by 15 people . It was first bookmarked on 27 Jul 2006, by Joel Liu.
-
14 Aug 07
-
07 Aug 07
-
18 Jul 07
-
15 Jun 07
. istoyanovDescription and analysis of a potent, increasingly
prevalent, and worrisome Internet attack -
25 Mar 07
-
24 Mar 07
-
08 Mar 07
-
20 Sep 06
-
10 Apr 06
-
14 Feb 05
Nick GallExcellent description of TCP three-way handshake, Denial of Service attacks, Distributed DoS attacks, and Distributed Reflection DoS Attacks.
via_delicious_20101217 ImportedFurl20071006 security pinboardimport20141106 Internet
-
There was no way that all, or probably any, of those hundreds of routers had been compromised or infected by any sort of Zombie. I realized that they were just ordinary, innocent, TCP servers doing their jobs. They were sending SYN/ACK packets to grc.com in the well-meaning belief that WE wanted to open a TCP connection with their built-in BGP servers. In other words, a malicious hacker located somewhere else on the Internet, was SYN FLOODING INTERNET ROUTERS with TCP connection-requesting SYN packets. Those SYN packets carried the fraudulent (spoofed) source IP belonging to grc.com. Therefore, the routers believed that the SYN packets were coming from us, and they were replying with SYN/ACK packets as the second phase of the standard TCP three-way connection handshake.
-
Would you like to comment?
Join Diigo for a free account, or sign in if you are already a member.