Home page logo

nanog logo nanog mailing list archives

DOS attack against DNS?
From: Roy <garlic () garlic com>
Date: Sat, 14 Jan 2006 22:45:06 -0800

I just started seeing thousands of DNS queries that look like some sort of DOS attack. One log entry is below with the IP obscured.

client xx.xx.xx.xx#6704: query: z.tn.co.za ANY ANY +E

When you look at z.tn.co.za you see a huge TXT record.

Is anyone else seeing this attack or am I the lucky one? Is this a known attack?


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]