|
|
Choosing A Webhost: |
RE: DOS ATTACK: msg#00232security.incidents
If he's got it up on his website in a ton of 1-pixel frames, chances are all his [the attacker] web visitors are loading several copies of the victim's page. The only real way to filter that would be by filtering based on HTTP_REFERRER. Unless I'm mistaken I don't believe Apache yet has a mechanism to enforce mandatory delays between the same page being loaded from the same IP. -----Original Message----- From: james [mailto:jamesh@xxxxxxxxxxxxx] Sent: Monday, October 28, 2002 6:31 PM To: Hunt, Jim Cc: incidents@xxxxxxxxxxxxxxxxx Subject: Re: DOS ATTACK Sounds like this attack is coming from a specific IP. Blocking that IP on a router would be one obvious answer. james ----- Original Message ----- From: "Hunt, Jim" <Jim.Hunt@xxxxxxxxxxxxxx> To: <Incidents@xxxxxxxxxxxxxxxxx> Sent: Sunday, October 27, 2002 9:59 PM Subject: DOS ATTACK > I have a friend that has a DOS Attack going on against their website. > It is being done by someone with a very popular website trying to squash a little guy. He is doing it be placing 1 pixel by 1 pixel inline frames in his webpages and having them load my friends webpage. It is killing his server and bandwidth. > > What can we do to block? The Server is W2K with IIS. > > Thanks! > ------------------------------------------------------------------------ ---- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com ---------------------------------------------------------------------------- This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com
|
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | Re: DOS ATTACK, Hugo van der Kooij |
|---|---|
| Next by Date: | Re: DOS ATTACK, Alex Lambert |
| Previous by Thread: | Re: DOS ATTACK, james |
| Next by Thread: | Re: DOS ATTACK, Alex Lambert |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
Free MagazinesCisco NewsReceive a free quarterly e-newsletter with exclusive articles on how Cisco IT uses its own products and solutions to enable the business. subscribe Systems Management News, the newspaper for IT systems administration and data center managers! Each issue of Systems Management News is chock-full of news and analysis to help you understand what's happening in your field. subscribe The Enterprise Newsweekly eWeek is the essential technology information source for builders of e-business. subscribe Oracle Magazine Oracle Magazine contains technology strategy articles, sample code, tips, Oracle and partner news, how to articles for developers and DBAs, and more. Oracle (NASDAQ: ORCL) is the world's largest enterprise software company. subscribe Total Telecom Total Telecom is "The Economist of the communications industry". subscribe |