268.txt

来自「This is the snapshot of Snot Latest Rule」· 文本 代码 · 共 60 行

TXT
60
字号
Rule:--Sid:268--Summary:This event is generated when a remote attacker attempts to send large, fragmented IP packets to the internal network, indicating a Jolt Denial of Service (DoS) attack.--Impact:Denial of service.--Detailed Information:Jolt is a DoS attack characterized by large, fragmented IP packets that, when launched at a Windows system, can hang or crash the computer. --Affected Systems:Windows 95Windows 98Windows NTWindows 2000--Attack Scenarios:An attacker sends oversized, fragmented IP packets to a target computer. If the computer is running an unpatched version of Windows, it may crash.--Ease of Attack:Simple.--False Positives:None known.--False Negatives:None known.--Corrective Action:Install the latest patches available for your operating system.Implement a packet-filtering firewall to block inappropriate traffic to the network.--Contributors:Original rule writer unknownSourcefire Research TeamSourcefire Technical Publications TeamJen Harvey <jennifer.harvey@sourcefire.com>--Additional References:--

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?