The ping of death (PoD) attack is a DDoS attack that sends out abnormally large packets in order to disrupt a web server.
After reading this article you will be able to:
Related Content
Subscribe to theNET, Cloudflare's monthly recap of the Internet's most popular insights!
Copy article link
A Ping of death (PoD) attack is a denial-of-service (DoS) attack, in which the attacker aims to disrupt a targeted machine by sending a packet larger than the maximum allowable size, causing the target machine to freeze or crash. The original ping of death attack is less common today. A related attack known as an ICMP flood attack is more prevalent.
An Internet Control Message Protocol (ICMP) echo-reply message or “ping”, is a network utility used to test a network connection, and it works much like sonar – a “pulse” is sent out and the “echo” from that pulse tells the operator information about the environment. If the connection is working, the source machine receives a reply from the targeted machine.
While some ping packets are very small, IP4 ping packets are much larger, and can be as large as the maximum allowable packet size of 65,535 bytes. Some TCP/IP systems were never designed to handle packets larger than the maximum, making them vulnerable to packets above that size.
When a maliciously large packet is transmitted from the attacker to the target, the packet becomes fragmented into segments, each of which is below the maximum size limit. When the target machine attempts to put the pieces back together, the total exceeds the size limit and a buffer overflow can occur, causing the target machine to freeze, crash or reboot.
While ICMP echo can be used for this attack, anything that sends an IP datagram can be used for this exploit. That includes TCP, UDP and IPX transmissions.
One solution to stop an attack is to add checks to the reassembly process to make sure the maximum packet size constraint will not be exceeded after packet recombination. Another solution is to create a memory buffer with enough space to handle packets which exceed the guideline maximum.
The original Ping of Death attack has mostly gone the way of the dinosaurs; devices created after 1998 are generally protected against this type of attack. Some legacy equipment may still be vulnerable. A new Ping of Death attack for IPv6 packets for Microsoft Windows was discovered more recently, and it was patched in mid 2013. Cloudflare DDoS Protection mitigates Ping of Death attacks by dropping malformed packets before they reach the targeted host computer.
nb是什么品牌 | 肛门里面有个肉疙瘩是什么 | 尿拉不出来是什么原因 | 腺肌症吃什么药 | 庞统为什么要献连环计 |
改进什么 | 中医内科主要看什么 | 胆固醇为什么会高 | 做妇科检查前需要注意什么 | 凝胶是什么 |
冲代表什么生肖 | 头皮一阵一阵发麻是什么原因 | 爱是什么意思 | 睡不着觉吃什么药效果好 | 夕阳红是什么意思 |
什么是包茎 | 什么醒酒最快 | 亭亭净植是什么意思 | hvb是什么意思 | 五月十三日是什么星座 |
年少轻狂下一句是什么hcv9jop1ns0r.cn | 什么的虫子hcv9jop0ns2r.cn | 查肝胆胰脾肾挂什么科hcv9jop2ns5r.cn | 分泌物多是什么原因hcv7jop6ns4r.cn | 530是什么意思mmeoe.com |
什么是贵妇脸hcv8jop9ns5r.cn | 自我意识是什么意思aiwuzhiyu.com | 劳燕分飞是什么意思dajiketang.com | 26周岁属什么hcv7jop9ns0r.cn | 离经之血是什么意思hcv7jop9ns1r.cn |
尿隐血阳性是什么病hcv7jop7ns3r.cn | 脚背浮肿是什么原因引起的hcv8jop5ns0r.cn | 中东为什么叫中东hcv8jop5ns8r.cn | 真丝和桑蚕丝有什么区别hcv9jop5ns5r.cn | 省检察长什么级别hcv7jop7ns3r.cn |
镁高有什么症状和危害hcv8jop8ns9r.cn | 卟啉病是什么病hcv8jop3ns6r.cn | 考试前吃什么提神醒脑hcv7jop9ns6r.cn | 一九八三年属什么生肖hcv9jop5ns3r.cn | 七年之痒是什么意思hcv9jop5ns9r.cn |