logo

New 'Loop DoS' Attack Impacts Hundreds of Thousands of Systems

ID: 99f0ed08-37f3-5494-8f31-54b836174350

STIX ID: report--99f0ed08-37f3-5494-8f31-54b836174350

Feed Name: The Hacker News

Threat Score
65/100

Date Published: 2024-03-20

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Researchers from CISPA disclosed a novel "Loop DoS" attack that abuses UDP-based application protocols (e.g., DNS, NTP, TFTP, Chargen, Echo) by spoofing source IPs to pair vulnerable servers so they endlessly exchange error responses, creating self-sustaining denial-of-service traffic. The study estimates roughly 300,000 hosts can be abused, identifies multiple affected products/vendors, warns the technique is trivial to trigger from a spoofing-capable host, and recommends anti-spoofing measures such as BCP38; there is currently no evidence of in-the-wild exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.