Repeated from last years network fun, almost a tradition.
A small workshop teaching people how to produce DDoS simulation traffic - useful for testing their own infrastructures.
We will have a server connected on 10Gbps on a switch with multiple 1Gbps port for attackers. Attackers can be connected through 1Gbps ports using USB Ethernet - we have loaners.
Work together to produce enough to take down this server!
WHILE attack is ongoing there will be ample opportunities to monitor traffic, monitor port, and decide on changes to prevent the attacks from working.
We will work through common attack types using hping3 and T50 packet generators, like:
- TCP SYN flooding
- TCP other flooding
- UDP flooding NTP, etc.
- ICMP flooding Misc - stranger attacks and illegal combinations of flags etc. then we will implement the changes suggested and retry attacks. You will go away from this with tools for producing packets, hping3 and some configurations for protecting - PF rules, switch rules, server firewall rules.
Note: course materials are open source and available at: https://github.com/kramse/security-courses/tree/master/presentations/pentest/simulated-ddos-workshop
Hosts for Simulating DDoS packets:
Metadata for Simulating DDoS packetsTo be recorded: No
URLs for Simulating DDoS packets
No URLs found.
Schedule for Simulating DDoS packets
Not scheduled yet