[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] DDos counter measures



Quoting Laurent LEVIER (llevier@argosnet.com):
> We expect now the worm to flood the box it is hosted on and so preserving 
> our IntraNet.

2-3 weeks advanced notice for security people (patch your m$ boxen, 
the worm is coming...) + 4 days of actualy seeing it hit the FW should be
enough to patch Intranet of any size.  Blackholing domains other than 
windowsupdate.com is just plain silly, IMHO.



-- 
.signature: No such file or directory
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html