logo

Some 300,000 IPs vulnerable to this Loop DoS attack

ID: 179274a5-63b8-5561-9c63-7eb99dd431d1

STIX ID: report--179274a5-63b8-5561-9c63-7eb99dd431d1

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-03-24

Date Updated: 2026-04-26

Author: Connor Jones

...
...

The report describes the disclosure of a trivial but impactful Loop Denial-of-Service (Loop DoS) technique that uses source-spoofed UDP error messages to induce infinite mutual error-response storms between vulnerable services (TFTP, DNS, NTP and legacy protocols like Echo, Chargen, QOTD). Researchers at CISPA released details and scanning code, coordinated disclosure with vendors and Shadowserver, and identified numerous affected products (including vendors tied to CVE-2024-1309) and an estimated ~300,000 potentially vulnerable public-facing systems worldwide.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.