Vulnerability Development mailing list archives

Re: New DoS attack


From: 11a () GMX NET (Bluefish)
Date: Sat, 17 Jun 2000 15:16:51 +0200


Or even using TCP to establish the connection, then UDP for game data?
This sounds a whole lot more reasonable (even easier) to implement, or am I
missing something?

Sounds like a better idea, yes. Obviously it still would be suspect to a
number of attacks, but if each UDP packet should carry some kind of secret
token (it could be found by sniffers though) you could automaticly discard
all other UDP-packets, as they are obiously forged.

It just might work. Future attacks may involve sniffers etc, but IMHO it
seems to be enough to solve todays problems.

..:::::::::::::::::::::::::::::::::::::::::::::::::..
     http://www.11a.nu || http://bluefish.11a.nu
    eleventh alliance development & security team


Current thread: