[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20060314065237.6d43f556@aud.vb.futz.org>
Date: Tue, 14 Mar 2006 06:52:37 -0500
From: Robert Story <rstory-l@...6.revelstone.com>
To: "Ventsislav Genchev" <vigour1@...il.com>
Cc: bugtraq@...urityfocus.com
Subject: Re: recursive DNS servers DDoS as a growing DDoS problem
On Tue, 7 Mar 2006 19:26:19 +0200 Ventsislav wrote:
VG> Are you sure about that amplification process??
Yes.
VG> In the scenario you describe, I cannot see any actual amplification...
The amplification isn't in the number of hosts responding, but in packet size.
A very small DNS request packet results in a huge response packet.
Powered by blists - more mailing lists