• FragmentSmack a real concern for servers — this month’s patches guard against it

    Home » Forums » Newsletter and Homepage topics » FragmentSmack a real concern for servers — this month’s patches guard against it

    Author
    Topic
    #217897

    If you’re running a Windows server, take note. FragmentSmack is a real DDoS vulnerability that’s slowly becoming more prevalent. Catalin Cimpanu at ZD
    [See the full post at: FragmentSmack a real concern for servers — this month’s patches guard against it]

    1 user thanked author for this post.
    Viewing 1 reply thread
    Author
    Replies
    • #217989

      Many AV products and firewall programs allow you to block fragmented and/or malformed IP packets. Many routers also allow you to do the same. For example, I have my home router and my AV program with a built-in firewall configured to do this, as this general type of attack has been around for years.

      I wish that routers and firewall and AV programs had an additional setting such that if a flood of fragmented IP packets from a given IP address are detected, then that IP address would automatically be blocked for a user specified time period.

      1 user thanked author for this post.
      • #218020

        Hmm, good idea. Would it be like directing input to /dev/null ?

    • #218094

      DDoS attacks change all the time so any protection in a SOHO router is unlikely to remain effective.

      cheers, Paul

      1 user thanked author for this post.
    Viewing 1 reply thread
    Reply To: FragmentSmack a real concern for servers — this month’s patches guard against it

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information: