TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Old Protocols, New Exploits: LDAP Unwittingly Serves DDoS Amplification Attacks

2016-11-15 · Read original ↗

ATT&CK techniques detected

3 predictions
T1498Network Denial of Service
48%
“old protocols, new exploits : ldap unwittingly serves ddos amplification attacks a new ddos attack vector that leverages lightweight directory access protocol ( ldap ) for reflection - amplification attacks was reported in october 2016 by corero network security. reflection - amp…”
T1498.001Direct Network Flood
43%
“old protocols, new exploits : ldap unwittingly serves ddos amplification attacks a new ddos attack vector that leverages lightweight directory access protocol ( ldap ) for reflection - amplification attacks was reported in october 2016 by corero network security. reflection - amp…”
T1572Protocol Tunneling
34%
“attack efficiency, the attacker usually selects the queries that will yield the largest replies in order to amplify the attack strength. figure 1 : how an ldap reflection - amplification attack works figure 1 : how an ldap reflection - amplification attack works ldap ' s weak spo…”

Summary

A new DDoS attack vector that leverages LDAP for reflection-amplification attacks is seeing increased usage.