|
lug-bg: FW: Predictable Initial Sequence Numbers
- Subject: lug-bg: FW: Predictable Initial Sequence Numbers
- From: bkrosnov@xxxxxxxx (Boyan Krosnov)
- Date: Wed, 2 May 2001 21:12:27 +0300
interesno chetivo za advanced tcp/ip razbirachi :)
BR,
Boyan
Michal Zalewski <lcamtuf@xxxxxxxxxxxxxxxx> has released a papers named
"Strange Attractors and TCP/IP Sequence Number Analysis". It can be
found
at http://razor.bindview.com/publish/papers/tcpseq.html
In the paper Michal describes the use of dynamical system methods to
analyze and predict TCP initial sequence numbers.
Guardent has finally seen fit to release Tim Newsham's paper on the
weaknesses of TCP initial sequence number algorithms that use random
increments. You can download it from
http://www.guardent.com/cgi-bin/pdfdownload.pl
CERT's advisory on the issue can be fount at
http://www.cert.org/advisories/CA-2001-09.html and is also attached
below.
===========================================================================
A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers)
http://www.linux-bulgaria.org/ Hosted by Internet Group Ltd. - Stara Zagora
|
|
|