[Dshield] MyDoom/NoVarg DoS details

Richard Porter rwporter at kragoriantowers.com
Wed Jan 28 00:02:19 GMT 2004


Eric,
Our plan includes blocking sco.com ip space at our internal border and sniff
for attempted connections. It is simple but we think it will be effective.

Richard

--- This should be plain text if not flame me directly please :)


-----Original Message-----
From: list-bounces at dshield.org [mailto:list-bounces at dshield.org] On Behalf
Of Eric Hines
Sent: Tuesday, January 27, 2004 12:30 PM
To: intrusions at incidents.org; list at dshield.org
Subject: [Dshield] MyDoom/NoVarg DoS details

Does anyone here have any details on the type of Denial of Service attack
that 
MyDoom/Novarg launches against SCO.COM in Feb? What solutions if any are 
recommended for this date, a null route? Is it just outbound port 80 SYN
floods?

Regards,
Eric Hines


-------------------------------------------
Eric Hines
CEO, Chairman
Applied Watch Technologies, Inc.
web: http://www.appliedwatch.com
email: eric.hines at appliedwatch.com
-------------------------------------------
Direct: (877) 262-7593 - Toll Free x327
Fax: (815) 425-2173
General: (877) 262-7593 (9am-5pm CST)
-------------------------------------------





_______________________________________________
list mailing list
list at dshield.org
To change your subscription options (or unsubscribe), see:
http://www.dshield.org/mailman/listinfo/list




More information about the list mailing list