Great Circle Associates Firewalls
(June 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Hot Java Denial of Services Attack
From: Tim Keanini <blast @ crl . com>
Date: Fri, 9 Jun 1995 09:11:27 -0700 (PDT)
To: "Dr. Frederick B. Cohen" <fc @ all . net>
Cc: firewalls @ greatcircle . com
In-reply-to: <9506090947 . AA24516 @ all . net>


On Fri, 9 Jun 1995, Dr. Frederick B. Cohen wrote:

> The following infinite loop will likely cause Hot Java to boil over:
> 
> 			for (i=0;(i==0));

Denial of Service Attacks are everywhere.  If you really think about it, 
almost every single internet service has a denial of service attack to 
exploit.  Auditing and least-priv'ed mechinisms seem to be the only 
defence. 
I just wanted to post this because it is something that is keeping me up 
at night these days.  I made the mistake of taking a piece of paper and 
listing all of the denial of service attacks that one could perform on 
internet services that we need day in and day out......yikes.  Don't do 
this unless you are on a very long drive and need to stay awake. :-)

off to see my shrink,
--blast


References:
Indexed By Date Previous: Re: Java and HotJava security issues
From: george @ cii . StarPower . Com
Next: Re: Java and HotJava security issues (fwd)
From: Jeff Welty <jwelty @ wdni . com>
Indexed By Thread Previous: Re: Hot Java Denial of Services Attack
From: peter @ nmti . com (Peter da Silva)
Next: Re: Hot Java Denial of Services Attack
From: Rick Smith <smith @ sctc . com>

Google
 
Search Internet Search www.greatcircle.com