Strange public traceroutes return private RFC1918 addresses

Matthew Crocker matthew at crocker.com
Mon Feb 2 23:40:52 UTC 2004



On Feb 2, 2004, at 6:20 PM, Jonas Frey (Probe Networks) wrote:

>
> This is quite often used. You cant (d)DoS the routers this way, nor try
> to do any harm to them as you cant reach them.
>

Sure you can,  easy,  attack a router 1 hop past your real target and 
spoof your target as the source.  The resulting ICMP responses will 
hammer the target.  If the Internet edge actually protected itself 
against spoofing it would be harder but it is still very do-able now.




More information about the NANOG mailing list