<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: SockStress &#8211; TCP/IP Vulnerability</title>
	<atom:link href="http://www.abeontech.com/security/147/sockstress-tcp-ip-vulnerability/feed" rel="self" type="application/rss+xml" />
	<link>http://www.abeontech.com/security/147/sockstress-tcp-ip-vulnerability</link>
	<description>Abeon Tech is a technology blog aimed at Geeks, Webmasters and tech addicts. My articles include Security, Design, SEO, Gaming and Tech Tips!</description>
	<lastBuildDate>Sun, 10 Jan 2010 02:02:50 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
	<item>
		<title>By: Abe</title>
		<link>http://www.abeontech.com/security/147/sockstress-tcp-ip-vulnerability/comment-page-1#comment-23</link>
		<dc:creator>Abe</dc:creator>
		<pubDate>Sat, 11 Oct 2008 10:04:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.abeontech.com/?p=147#comment-23</guid>
		<description>It&#039;s a little more serious than most people think, as it affects any computer with the TCP stack reachable from the outside world.....

This includes services with a router or any open ports to the outside world! (routers having BGP open for routing tables!)

All versions of the stack are vulnerable to some degree using slightly different methods. But, according to the Outpost24 team, they are all vulnerable.

Even load-balanced servers have been used as targets by the team. The servers farms behind these servers could, in theory, be flooded.

This attack is very similar to the 1st ever Dos attack (syn flood). But this attack starts after the TCP connection has been established and syn cookie is sent and acknowledged.</description>
		<content:encoded><![CDATA[<p>It&#8217;s a little more serious than most people think, as it affects any computer with the TCP stack reachable from the outside world&#8230;..</p>
<p>This includes services with a router or any open ports to the outside world! (routers having BGP open for routing tables!)</p>
<p>All versions of the stack are vulnerable to some degree using slightly different methods. But, according to the Outpost24 team, they are all vulnerable.</p>
<p>Even load-balanced servers have been used as targets by the team. The servers farms behind these servers could, in theory, be flooded.</p>
<p>This attack is very similar to the 1st ever Dos attack (syn flood). But this attack starts after the TCP connection has been established and syn cookie is sent and acknowledged.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jgoto</title>
		<link>http://www.abeontech.com/security/147/sockstress-tcp-ip-vulnerability/comment-page-1#comment-22</link>
		<dc:creator>jgoto</dc:creator>
		<pubDate>Fri, 10 Oct 2008 19:19:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.abeontech.com/?p=147#comment-22</guid>
		<description>Great post, Scary news for anyone hosting a server.</description>
		<content:encoded><![CDATA[<p>Great post, Scary news for anyone hosting a server.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
