Full Disclosure mailing list archives

Re: Re[2]: Personal firewalls.


From: Eliah Kagan <degeneracypressure () gmail com>
Date: Fri, 20 Jan 2006 18:11:51 -0500

Z sends spoofed packets coming from the DNS server of X even more
interesting..

When Sygate PRO "blackholes" a host, does it block only unsolicited
packets (bad), or does it block *all* incoming packets from that host
(worse)?

-Eliah

On 1/20/06, Thierry Zoller <Thierry () zoller lu> wrote:
Dear Eliah Kagan,

EK> Then Z comes along and sends a
EK> bunch of SYN packets to X, spoofed to have the source IP of Y, waits
EK> 10 minutes, and repeats ad infinitum.

Z sends spoofed packets coming from the DNS server of X even more
interesting..

--
http://secdev.zoller.lu
Thierry Zoller
Fingerprint : 5D84 BFDC CD36 A951 2C45  2E57 28B3 75DD 0AC6 F1C7
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: