邪恶八进制信息安全团队技术讨论组's Archiver

EvilOctal 2006-2-19 03:37

[转载]Web Forms and Untraceable DDoS Attacks

信息来源:邪恶八进制信息安全团队([url]www.eviloctal.com[/url])

We analyze a Web vulnerability that allows an attacker to perform an email-based attack on selected victims, using standard scripts and agents. What differentiates the attack we describe from other, already known forms of distributed denial of service (DDoS) attacks is that an attacker does not need to infiltrate the network in any manner—as is normally required to launch a DDoS attack. Thus, we see this type of attack as a poor man’s DDoS. Not only is the attack easy to mount, but it is also almost impossible to trace back to the perpetrator. Along with descriptions of our attack, we demonstrate its destructive potential with (limited and contained) experimental results.

页: [1]
© 1999-2008 EvilOctal Security Team