DDOS 攻击与防范
1. 常见攻击:flood: ICMP/IGMP, udp,tcp, syn ,push+ack,ack, rst, ssl
7层: dns query, dns nxdomain query,dns 反射(edns超过512字节限制), ntp 反射(mon list), snmp反射,http cc;
慢速攻击:sockstress(receive window 0), thc ssl dos(ssl renegotiation), slowloris(http header 不发送'\r\n\r\n'), POST(Content-Length),ReDos, HashDos
2. tools:
hping, pentbox, zarp, LOIC, HOIC,HULK,
Slowloris, RUDY, thc-ssl-dos
3.dns ntp snmp 放大
4.org
110实验室, SEA,lulzsec, anonymous,jester, hidden lynx, icefog
vupen, ZDI
页:
[1]