> Z sends spoofed packets coming from the DNS server of X even more
> interesting..

When Sygate PRO "blackholes" a host, does it block only unsolicited
packets (bad), or does it block *all* incoming packets from that host
(worse)?

-Eliah

On 1/20/06, Thierry Zoller <[EMAIL PROTECTED]> wrote:
> Dear Eliah Kagan,
>
> EK> Then Z comes along and sends a
> EK> bunch of SYN packets to X, spoofed to have the source IP of Y, waits
> EK> 10 minutes, and repeats ad infinitum.
>
> Z sends spoofed packets coming from the DNS server of X even more
> interesting..
>
> --
> http://secdev.zoller.lu
> Thierry Zoller
> Fingerprint : 5D84 BFDC CD36 A951 2C45  2E57 28B3 75DD 0AC6 F1C7
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Reply via email to