Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




bugtraq logo Bugtraq mailing list archives

UDP DoS attack in Win2k via IKE
From: "c0redump" <c0redump () ackers org uk>
Date: Fri, 7 Dec 2001 17:37:07 -0000

UDP DoS in Win2k via IKE

PROBLEM
=======
A DoS attack can be carried out on Win2k machines running IKE (internet key
exchange) by sending flooding IKE with UDP packets.  This can cause the
machine to lock up and render 99% of the CPU.

EXPLOIT
======
Connect to port 500 (IKE) of the Win2k box and start sending UDP packets of
more than 800 bytes continuously.  The box will eventually stop responding
and services will be denied due to 99% CPU usage from the packets.

SOLUTION
=======
Firewall port 500 off if IPSsec is not in use.

c0redump () ackers org uk
gridrun () spacebitch com
#hacktech @ undernet


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]