Making network protocols go crazy - Mot-clé - DoS - Commentaires2017-01-17T17:46:17+01:00grurn:md5:823289cecb88b10a72ab37a35928e25dDotclearDéni de service universel dans TCP - GRurn:md5:6ea43ec4795c6c29dc22e7e7dab041082009-06-23T16:02:51+02:002012-02-08T19:52:35+01:00GR<p>Apparemment, il y aurait une différence, d'après le CERT-FI :<br />
<a href="https://www.cert.fi/haavoittuvuudet/2008/tcp-vulnerabilities.html" title="https://www.cert.fi/haavoittuvuudet/2008/tcp-vulnerabilities.html" rel="nofollow">https://www.cert.fi/haavoittuvuudet...</a></p>
<p>"June 15 2009. In the issue #66 of the Phrack magazine there was an article on exploiting TCP Persist Timer weaknesses (<a href="http://www.phrack.com/issues.html?issue=66&id=9#article" title="http://www.phrack.com/issues.html?issue=66&id=9#article" rel="nofollow">http://www.phrack.com/issues.html?i...</a>) to cause Denial of Service conditions. The article discusses issues similar but not the same as the issues reported by Outpost24. The publication of the Phrack-magazine article will not affect the coordination and schedule related to the issues reported by Outpost24. CERT-FI emphasizes that the eventual release of the issues reported by Outpost24 will be done in a coordinated fashion."</p>Déni de service universel dans TCP - Michel Arboiurn:md5:c8764da2b4b5f0801d268474955bb2152009-06-20T12:24:22+02:002009-06-20T12:24:22+02:00Michel Arboi<p>Ça ne serait pas ça, finalement?<br />
<a href="http://www.phrack.org/issues.html?issue=66&id=9#article" title="http://www.phrack.org/issues.html?issue=66&id=9#article" rel="nofollow">http://www.phrack.org/issues.html?i...</a></p>Déni de service universel dans TCP - GRurn:md5:82d75a189b742a5aa4d0cd6af087b57b2008-10-20T09:07:18+02:002012-02-08T19:54:20+01:00GR<p>@pello: Et non, pas de détails. C'est vraiment ridicule. Tout ce buzz pour rien.</p>
<p>@Michel: Malheureusement, sans leurs détails, on va devoir arrêter les spéculations :(</p>
<p>Sinon, pour les intéressés, netkill.pl est ici:<br />
<a href="http://securityvulns.ru/files/netkill.pl" title="http://securityvulns.ru/files/netkill.pl" rel="nofollow">http://securityvulns.ru/files/netki...</a></p>
<p>En gros, il fait le SYN, et répond ensuite au SYN+ACK avec un ACK+PSH contenant un payload applicatif (du HTTP). Il économise un packet, pas mal.</p>Déni de service universel dans TCP - Michel Arboiurn:md5:9b44af47fa34b53e5e3096f13460859f2008-10-19T22:06:20+02:002008-10-19T22:06:20+02:00Michel Arboi<p>Si c'est ça, quelle différence avec Naphta et ses avatars (netkill...)?<br />
Leur attaque est censée être générique et s'en prendre à n'importe quelle ressource noyau. Je trouve étonnant que personne n'ait vu ça avant. Ce truc sent l'arnaque.</p>Déni de service universel dans TCP - pellourn:md5:11d7cdabb627d8d240674b6ce5dd94f22008-10-19T15:14:08+02:002008-10-19T15:14:08+02:00pello<p>Hélas, pas de détails publiés à la T2.<br />
Bravo pour l'ouverture de ton blog :)</p>
<p>Francois</p>