[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Re[2]: [Full-disclosure] Personal firewalls.
- To: full-disclosure@xxxxxxxxxxxxxxxxx
- Subject: Re: Re[2]: [Full-disclosure] Personal firewalls.
- From: Eliah Kagan <degeneracypressure@xxxxxxxxx>
- Date: Fri, 20 Jan 2006 18:11:51 -0500
> Z sends spoofed packets coming from the DNS server of X even more
> interesting..
When Sygate PRO "blackholes" a host, does it block only unsolicited
packets (bad), or does it block *all* incoming packets from that host
(worse)?
-Eliah
On 1/20/06, Thierry Zoller <Thierry@xxxxxxxxx> wrote:
> Dear Eliah Kagan,
>
> EK> Then Z comes along and sends a
> EK> bunch of SYN packets to X, spoofed to have the source IP of Y, waits
> EK> 10 minutes, and repeats ad infinitum.
>
> Z sends spoofed packets coming from the DNS server of X even more
> interesting..
>
> --
> http://secdev.zoller.lu
> Thierry Zoller
> Fingerprint : 5D84 BFDC CD36 A951 2C45 2E57 28B3 75DD 0AC6 F1C7
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/