[GTER] DDoS - Amplificacao TFTP - Fator 60x - 600k servidores abertos

Wilson R Lopes wilsonlopes00 at gmail.com
Tue Mar 15 20:51:10 -03 2016


http://www.theregister.co.uk/2016/03/09/trivial_ddos_amplification_method/

“The discovered vulnerability could allow hackers to use these publicly
open servers to amplify their traffic, similarly to other DDoS
amplification attacks like DNS amplification. If all specific conditions
are met this traffic can be applied up to 60 times the original amount,”
researcher Boris Sieklik told *El Reg*.

“I also studied effects of this attack on different TFTP software
implementations and found that most implementations automatically
retransmit the same message up to six times, which also contributes to the
amplification.”



More information about the gter mailing list