Header
Home | Set as homepage | Add to favorites
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey, 



DRDoS

image


 


The latest variation on the DoS, the DRDoS, involves one or more hosts sending a series of TCP SYN requests or ICMP ping requests to many unsuspecting, even thoroughly secure, hosts using the “spoofed” source address of the target. When these hosts respond to what appears to be a legitimate, nonthreatening request, they collectively create an unsupportable flood of packets aimed at the target. Figure 1-4 shows a DRDoS attack. Again, even if the target device(s) can determine what’s happening, only a cooperative ISP can block the traffic before it buries the target’s Internet connection.

Click To expand
Figure 1-4: DRDoS attack showing the interim hosts

If the originating source continues to vary the type of packets sent to the reflectors, the filters at the ISP have only temporary or limited usefulness before they need to be changed.

75 times read

Related news

» Denial of Service (DoS) Attacks
by alperen posted on Jun 30,2009
» Denial of Service Attacks
by alperen posted on Sep 05,2009
» Internet Group Management Protocol Version 3 (IGMPv3)
by alperen posted on Dec 18,2008
» TCP’s Established Option
by alperen posted on Jul 08,2009
» Well-Known DoS Attacks
by alperen posted on Jun 30,2009
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author