hacking security forum

[Full-Disclosure] Re: A new TCP/IP blind data injection technique?

From: Kris Kennaway <kris@FreeBSD.ORG>
Date: Wed Dec 10 2003 - 17:59:33 CST

On Thu, Dec 11, 2003 at 12:28:28AM +0100, Michal Zalewski wrote:

> 2. Random IP ID numbers, a feature of some systems (OpenBSD?), although also
> risky (increasing reassembly collission probability), make the attack
> more difficult.

FreeBSD also has the option of randomizing the IP ID.

Kris

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Received on Wed Dec 10 19:47:26 2003

This archive was generated by hypermail 2.1.8 : Wed Dec 10 2003 - 20:01:01 CST

Custom Search