Increase of DOS attacks using TCP src and/or dst of 0

Christopher Morrow morrowc.lists at
Wed Mar 7 15:29:46 CST 2012

On Wed, Mar 7, 2012 at 3:45 PM, Matthew Huff <mhuff at> wrote:
> Anyone else see a massive increase of scanning/dos with TCP source and/or
> dst port of 0? We started seeing a massive increase today creating some
> issue with our firewalls.

srs/dst of 0 as measured how? (tcpdump? netflow? app logs?)

More information about the NANOG mailing list