Hacker News new | ask | show | jobs
by kfreds 3525 days ago
"All versions (SSL3.0, TLS1.0, TLS1.1, TLS1.2) are affected." according to http://security.360.cn/cve/CVE-2016-8610/

It would be helpful if the researchers clarified how potent this DoS attack vector is. Is sending "a large number of these large records" more efficient at denying availability than a naive flood using e.g. SYNs or UDP?

1 comments

That's a per-site/victim question, how big is your pipe, how big is your CPU, what kind of networking devices do you offload traffic on?