[e2e] DDoS attack vs. Spoofing of Source Address

John Kristoff jtk at northwestern.edu
Thu Jan 19 11:33:31 PST 2006


On Thu, 19 Jan 2006 09:43:23 -0800
Joe Touch <touch at ISI.EDU> wrote:

> Further, no attacker would intentionally spoof bogons;

Many DoS agents have had the ability to randomly fake the source
address and of course they commonly come up with a "bogon".

Agents sometimes also have the capability to fake the source address
within some variable length netmask.  I guess if attackers really
cared about the "quality" of their faked sources they probably
wouldn't want use a bogon, but they don't really need to care as I
mentioned earlier so sometimes you do see it.

John


More information about the end2end-interest mailing list