logo

Are You Really Hacking Naked?

ID: ad52a509-5c46-5666-898c-93ee2daabcd1

STIX ID: report--ad52a509-5c46-5666-898c-93ee2daabcd1

Feed Name: Black Hills Infosec Blog

Date Published: 2017-10-12

Date Updated: 2026-04-27

Author: BHIS

...
...

A penetration tester recounts troubleshooting MASSCAN performance issues caused by connection state tracking on a Linux router and ISP equipment, which led to high CPU and packet drops. By implementing an iptables raw table NOTRACK rule for DMZ outbound traffic to the Internet, the author bypassed nf_conntrack, stabilized the network, and achieved high-speed scanning without overloading the firewall.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.