main
Report a problem

Flaw Leaves Internet Open to Attacks

malebolgia   on 20 April 2004 - 20:29 · 7 comments & 1332 views

Advertisement (Why?)
A security researcher has developed a new attack for a well-known flaw in the TCP protocol that allows an attacker to effectively shut down targeted routers and terminate existing TCP sessions at will. The scenario has many security experts worried, given the ubiquity of TCP and the fact that there's an attack tool already circulating on the Interne

The basic problem lies in the fact that existing TCP sessions can be reset by sending specially crafted RST (reset) or Syn (synchronization) packets to either of the machines involved in the session. This is in fact an intended feature of the protocol. However, the source IP addresses on these packets can be forged, which makes it possible for attackers not involved in the TCP session to terminate the connection, causing a de facto denial of service.

News source: eWeek

Post a comment · Send to friend Comments · There are 7 additional comments

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)