TFTP Reflection ... now in the wild!

TFTP Reflection ... now in the wild!

In The Cyber Academy, we hope our research is always useful and has impact, and we focus on finding major vulnerabilities. So as DNS and NTP reflection attacks account for many of the DDoS attacks on the Internet [here], we were the first to discover a flaw in the TFTP protocol and outlined how it could be used for reflection attacks:

And, so, as we predicted, the flaw is been seen in the wild, with a range of network providers seeing these signs [here]:

Where security researchers at Akamai  warn of real-life attacks leveraging the method:

And which showcase the growth in the compromise [here]:

And here [here]:

Conclusions

We did the academic thing,  and fully investigated the methods involved. Only through research can you improve things. Researchers, too, can publish papers, and where there can be no impact on a paper, but we always aim to publish work which has a strong impact.

Just wait until you see what we are working on now ... [register]

 

要查看或添加评论,请登录

Prof Bill Buchanan OBE FRSE的更多文章

社区洞察

其他会员也浏览了