|
|
|
|
|
by immibis
470 days ago
|
|
> The IPv4 space is tiny and trivial to scan Something many people don't expect is that the IPv6 space is also tiny and trivial to scan, if you follow certain patterns. For example, many server hosts give you a /48 or /64 subnet, and your server is at your prefix::1 by default. If they have a /24 and they give you a /48, someone only has to scan 2^24 addresses at that host to find all the ones using prefix::1. |
|
AWS only allows routing /80 to EC2 instances making a huge difference.
It doesn't mean that we should rely on obscurity, but the entire space is not tiny as IPv4 was.