Re: Re: FW: IDS Signature Confidence

bbhikkaji_at_yahoo.co.in
Date: 06/27/05

  • Next message: Baron Biza: "IDS for Unix"
    Date: 27 Jun 2005 16:58:20 -0000
    To: focus-ids@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is) Vipul,

    There is a third kind of DoS attacks that exploit's predictability model of a protocol. Shrew attack is one such attack which exploits deterministic nature of TCP’s congestion control algorithm.

    Even though there aren't many of this kind but these are extremely difficult to detect and mitigate

    Thanks
    Bhargav

    --------------------------------------------------------------------------
    Test Your IDS

    Is your IDS deployed correctly?
    Find out quickly and easily by testing it with real-world attacks from
    CORE IMPACT.
    Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708
    to learn more.
    --------------------------------------------------------------------------


  • Next message: Baron Biza: "IDS for Unix"

    Relevant Pages

    • Re: how to react on ssh attacks?
      ... > I recently checked my log files of my ssh service (so far as I ... these attacks will get more sophisticated as time goes on - the ... Protocol 2,1 line in /etc/ssh/sshd_config to say Protocol 2 and then ... Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org ...
      (Fedora)
    • Re: hash function
      ... > because the PRF security condition does not guarantee security ... > I frequently see protocol designers who are not very clear on what ... > that the hash had better be collision-resistant. ... > against attacks that might not have been anticipated. ...
      (sci.crypt)
    • Re: Lets talk about firewalls - what do we as a group think a firewall should be/have?
      ... attacks. ... firewall for open ports, or to block worms (TCP 1433/1434 as an ... It should be able to filter both inbound or outbound traffic by protocol ... Many NICs, of course, not only two. ...
      (comp.security.firewalls)
    • [REVS] Attacks on Kerberos V in a Windows 2000 Environment
      ... Beyond Security in Canada ... Microsoft introduced Kerberos V as ... which is a protocol used for ... SMB is used as an example in one of the attacks. ...
      (Securiteam)
    • Re: Countering chosen-plaintext attacks
      ... If you assume that attacks ... Those unknown attacks are ... That's not a 'protocol' in my understanding of the word. ... idea I had in my humble design WEAK4-EX. ...
      (sci.crypt)

  • Quantcast