[ale] Being used in a DOS attack against others

Jim Popovitch jimpop at rocketship.com
Thu Aug 8 11:31:35 EDT 2002


Hi Michael,

Which MTA are you using?  Depending on the MTA there are usually several
methods of eliminating or controlling this behavior.

-Jim P.

> -----Original Message-----
> From: Michael Hirsch [mailto:mhirsch at nubridges.com]
> Sent: Thursday, August 08, 2002 9:48 AM
> To: ALE
> Subject: [ale] Being used in a DOS attack against others
>
>
> Someone has been using our mail server to amplify a DOS attack against
> some other mail servers.  It works like this.  Then send a mail to
> randomuser at nubridges.com with a return address of attackedcompany.com.
> Since random user does not exist we send a reply that the user does not
> exit to attackedcompany's mail server.  So we flood their mail server.
>
> I've never seen this attack before, though it seems quite simiple.  Is
> this a well know DOS attack?  Has anyone else been experiencing this?
>
> It seems to have stopped this morning, but it was ongoing for the last
> two days.
>
> --Michael
>
>
> ---
> This message has been sent through the ALE general discussion list.
> See http://www.ale.org/mailing-lists.shtml for more info.
> Problems should be
> sent to listmaster at ale dot org.
>


---
This message has been sent through the ALE general discussion list.
See http://www.ale.org/mailing-lists.shtml for more info. Problems should be 
sent to listmaster at ale dot org.






More information about the Ale mailing list