There has been some work done on the issue that dave mentioned about
exploiting the complexity of certain program operations
for efficient denial of service by Scott Crosby and Dan Wallach from Rice.
They looked at how this type of attack could be
used against the Bro IDS, among other things... you can check out their
Usenix Security paper, example code, and pointers
to related work here.
http://www.cs.rice.edu/~scrosby/hash/
Cheers,
Tal
_______________________________________________
Dailydave mailing list
Dailydave_at_lists.immunitysec.com
http://lists.immunitysec.com/mailman/listinfo/dailydave
Received on Apr 23 2008