pen-test
[Top] [All Lists]

Re: rose fragmentation attack

To: pen-test@securityfocus.com
Subject: Re: rose fragmentation attack
From: Roland Dobbins <rdobbins@cisco.com>
Date: Thu, 28 Jun 2007 02:07:35 +0700
Authentication-results: sj-dkim-1; header.From=rdobbins@cisco.com; dkim=pass ( sig from cisco.com/sjdkim1004 verified; );
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: v=0.5; a=rsa-sha256; q=dns/txt; l=440; t=1182971262; x=1183835262; c=relaxed/simple; s=sjdkim1004; h=Content-Type:From:Subject:Content-Transfer-Encoding:MIME-Version; d=cisco.com; i=rdobbins@cisco.com; z=From:=20Roland=20Dobbins=20<rdobbins@cisco.com> |Subject:=20Re=3A=20rose=20fragmentation=20attack |Sender:=20; bh=p6elmTwEoXbeg1LLfpoCp/D0hmlrsxKAp2/8S8VqswM=; b=dsux1n1mGokeLU77nEP3LaUiCMJIjKStVhRBkFsu6vGuuX2Axa1/3i+MRNn+IhfvRqvNtvvs ZDfWl0hrWDNcJwXZQfxHUyTXOU9FMloeWuSuV+YPChHml21QPlDYj/TyRvHNGW3sf3cDrzZBAy AtT+jjoAkfSnKeiUCpD9uiPCU=;
In-reply-to: <705543260706270825l314a1b38j5efca5cbb3db7098@mail.gmail.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <896A724F419846AB98E2C8EF94084F37.MAI@thewolfenet.com> <705543260706270825l314a1b38j5efca5cbb3db7098@mail.gmail.com>
Resent-date: Wed, 27 Jun 2007 13:48:13 -0600 (MDT)
Resent-from: pen-test-return-1078484496@securityfocus.com
Resent-message-id: <20070627194813.EE469144C6D@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com

On Jun 27, 2007, at 10:25 PM, Justin Ferguson wrote:

I cannot recall a single
penetration test where DoS was in scope

This is a big gap in most work in this arena, IMHO, and one which ought to be rectified.

----------------------------------------------------------------------
Roland Dobbins <rdobbins@cisco.com> // 408.527.6376 voice

                   Equo ne credite, Teucri.

                          -- Laocoön




------------------------------------------------------------------------
This List Sponsored by: Cenzic

Swap Out your SPI or Watchfire app sec solution for
Cenzic's robust, accurate risk assessment and management
solution FREE - limited Time Offer

http://www.cenzic.com/wf-spi
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>