[Full-disclosure] Analysis: Vast IPv6 address space actually enables IPv6 attacks



Folks,

TechTarget has published an article I've authored for them, entitled
"Analysis: Vast IPv6 address space actually enables IPv6 attacks".

The aforementioned article is available at:
<http://searchsecurity.techtarget.com/tip/Analysis-Vast-IPv6-address-space-actually-enables-IPv6-attacks>

(FWIW, it's a human-readable version of the IETF Internet-Draft I
published a month ago or so about IPv6 host scanning (see:
<http://www.si6networks.com/presentations/ietf.html>))

Cheers,
--
Fernando Gont
SI6 Networks
e-mail: fgont@xxxxxxxxxxxxxxx
PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



Relevant Pages

  • Analysis: Vast IPv6 address space actually enables IPv6 attacks
    ... Vast IPv6 address space actually enables IPv6 attacks". ... The aforementioned article is available at: ...
    (Bugtraq)
  • [REVS] IPv6 Address Cookies
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... IPv6 Address Cookies ... Internet is a serious problem. ... utilize the large IPv6 address space to mitigate spoofed attacks. ...
    (Securiteam)
  • Re: Can only access Debian website through proxy
    ... you want IPv6, you could try to fix that. ... # Uncomment the next two lines to enable Spoof protection ... # security of the host and prevent against some network attacks ... # Accept ICMP redirects only for gateways listed in our default ...
    (Debian-User)
  • Re: IPv6 Security Scanner
    ... belief that when IPv6 rolls out, active scanning will become a thing ... i.e. the smallest IPv6 subnet address range is millions of ... Cross site scripting and other web attacks before hackers do! ...
    (Pen-Test)
  • Re: Analysis: Vast IPv6 address space actually enables IPv6 attacks
    ... so you say it's not as hard to scan an IPv6 network as the raw math ... would indicate but it's still a lot harder than scanning an IPv4 network. ... Vast IPv6 address space actually enables IPv6 attacks". ...
    (Bugtraq)