Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

how to detect DDoS attack through HTTP response analysis(throuput)
From: 김무성 <kimms () infosec co kr>
Date: Mon, 27 Jun 2011 11:30:36 +0900

Hello list,

 

I'm looking for meterials or information, research about that how to detect
DDoS attack through HTTP response analysis(throuput).

 

for example, 

if there are many "408 request timeout" responses, we can think this is
slowloris or RUDY DDoS attack.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]