Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




bugtraq logo Bugtraq mailing list archives

cc:mail trivial DoS attack - self mailbombing.
From: alan () MANAWATU GEN NZ (Alan Brown)
Date: Thu, 16 Sep 1999 05:35:50 +1200


This seems to work on most cc:mail installations

Send mail to postmaster () [x x x x] where x.x.x.x is the IP address of the
server.

In most cases, the machine will mailbomb itself into the ground
with undeliverable mail messages.

For bonus points, use a bogus, undeliverable sender envelope and watch
it crash even faster.

In some cases, In some cases, postmaster () rDNS name will have the same effect, depending
how badly setup the server is.

Script kiddies may like to have fun by using a sender envelope belonging
to someone else. One case I've seen resulted in the machine sending over
5800 "postmaster: No such user" errors for one message sent to it.

AB


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]