[clug] shimmer

Michael Still mikal at stillhq.com
Fri Jul 11 04:40:08 GMT 2008


Sam Couter wrote:
> David Schoen <neerolyte at gmail.com> wrote:
>> This may be a silly question, but how are DoS attacks easier with
>> something like that?
> 
> It's painfully simple to forge the source address of IP packets. With
> such a system, I can lock out any IP address I choose with a single
> packet.

There is some really interesting research on exactly how common this
sort of thing is, mainly using backscatter analysis from large blocks of
otherwise unused IPs. Its worth a read if you're interested in such things.

Mikal


More information about the linux mailing list