Effy Posted January 18, 2011 Report Posted January 18, 2011 Welcome to Slowloris - the low bandwidth, yet greedy and poisonous HTTP client!This is NOT a TCP DoS, because it is actually making a full TCP connection, not a partial one, however it is making partial HTTP requests. It's the equivalent of a SYN flood but over HTTP. One example of the difference is that if there are two web-servers running on the same machine one server can be DoSed without affecting the other webserver instance. Slowloris would also theoretically work over other protocols like UDP, if the program was modified slightly and the webserver supported it. Slowloris is also NOT a GET request flooder. Slowloris requires only a few hundred requests at long term and regular intervals, as opposed to tens of thousands on an ongoing basis.[pentru wanna-be "hackers" : downloadati strawberry perl, downloadati slowloris.pl si apoi intrati in perl si executati comanda :perl slowloris.pl -dns example.com > inlocuiti example.com cu target-ul vostru.]download here: http://ha.ckers.org/slowloris/slowloris.plP.S : Nu stiu daca a mai fost postat... Quote
Gabriel87 Posted January 18, 2011 Report Posted January 18, 2011 Daca nu ai banda la asa ceva stiu din surse sigure ca l-am testat si maxim 5 minute o dat si dupaia mi`o picat mi-e netu Quote
Silviu Posted January 18, 2011 Report Posted January 18, 2011 ^Mie se scrie legat si asa ceva se foloseste de obicei pe un dedicat. Quote
Effy Posted January 18, 2011 Author Report Posted January 18, 2011 Asa este, nu rezolvi nimic daca nu dispui de o banda buna. Eu l-am testat, imi merge pe unele siteuri, si nu imi pica netul.Gn. Quote
Gabriel87 Posted January 18, 2011 Report Posted January 18, 2011 Asa este, nu rezolvi nimic daca nu dispui de o banda buna. Eu l-am testat, imi merge pe unele siteuri, si nu imi pica netul.Gn.Pai daca ai tzeava buna la net nu iti pica Quote
quantum Posted January 19, 2011 Report Posted January 19, 2011 cu slowloris nu iti trebuie nu stiu ce banda la net. ideea ii ca deschide conexiuni catre serverul web insa nu le inchide iar cand serverul web ajunde la nr maxim de conexiuni (cred ca 250 ii default la apache) atunci devine inaccesibil pentru altii. practic tu folosesti toate cele 250 de conexiuni dar prin acele conexiuni transferi foarte putine date doar cat sa le tii deschise. Quote
habbatussauda Posted January 24, 2011 Report Posted January 24, 2011 thank for share. slowloris is the best Quote