Monday, June 2, 2003

DoS by Attacking Hash Tables

Pointed out by /., Rice University has a paper describing "Denial of Service via Algorithmic Complexity Attacks". Basically, it's an asymmetrical attack (very little input to trigger the DoS) against hash tables which are used heavily in programming.

Examples include: just about anything written in Perl, NIC drivers, Squid, and DJBDNS (gasp!).

No comments:

Post a Comment