|
|||||||||||
|
RE: A question for the list...
From: Bojan Zdrnja <Bojan.Zdrnja(at)LSS.hr>
Date: Sat May 24 2003 - 20:34:05 EDT
Although I agree that counter attack _can_ be effective, I don't think it's very feasible. Take SQLSlammer for example. It's whole payload is one UDP packet 376 bytes big. Did you see that? UDP? Spoofing packets? Hell yes. Now, how do you know who is the real source of that packet. There is no way to know it. Now, of course, you can say that SQLSlammer doesn't spoof source packet IP address, but who says that won't happen in the future. So we have 2 grey areas of counter attacks: first is the legality of it and second is actual feasibility. I don't think this can hold water ... Best regards, Bojan Zdrnja
To get your FREE white paper visit us at: http://www.securityfocus.com/AirDefense-incidents Received on Mon May 26 12:36:38 2003 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:02:06 EDT |
||||||||||
|
|||||||||||