A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2015; you can also visit the original URL.
The file type is application/pdf
.
Fragmentation Considered Vulnerable
2013
ACM Transactions on Privacy and Security
We show that fragmented IPv4 and IPv6 traffic is vulnerable to effective interception and denial-of-service (DoS) attacks by an off-path attacker. Specifically, we demonstrate a weak attacker intercepting more than 80% of the data between peers and causing over 94% loss rate. We show that our attacks are practical through experimental validation on popular industrial and opensource products, with realistic network setups that involve NAT or tunneling and include concurrent legitimate traffic as
doi:10.1145/2445566.2445568
fatcat:ddatlffv6bdydhnklmqafnxmgm