Security Basics mailing list archives

Re: DoS Attackers using only udp and icmp protocol?


From: Ansgar -59cobalt- Wiechers <bugtraq () planetcobalt net>
Date: Fri, 9 Feb 2007 16:09:48 +0100

On 2007-02-09 Monty Ree wrote:
I have monitored that some DoS attack which generates large bps(over
1Gbps) against my network.
and I can see that all dos related packets are udp and icmp not tcp.

In the point of view attacker, 
Is it impossible that generates lots of packets and large packets
using tcp without 3 way handshake?

It's not impossible, but using stateless protocols like ICMP or UDP is a
lot easier.

Regards
Ansgar Wiechers
-- 
"All vulnerabilities deserve a public fear period prior to patches
becoming available."
--Jason Coombs on Bugtraq


Current thread: