Collected research
HashDOS: Effective Denial of Service attacks against web application platforms
28C3: Effective Denial of Service attacks against web application platforms
Programme entry for the 28C3 talk by Alexander Klink and Julian Waelde on HashDoS. A common flaw in how PHP, ASP.NET, Java and other platforms hash form-parameter keys lets a single crafted HTTP request pin a web server's CPU at 99 percent for minutes to hours. The attack is independent of the application, relying only on the platform's string hash function.
Record
- Document
- 28C3: Effective Denial of Service attacks against web application platforms
- Researcher
- Alexander Klink and Julian Wälde
- Published by
- fahrplan.events.ccc.de
- Date
- Topic
- Crypto
In the archive
Related sources
- Effective DoS on Web Application Platforms Whitepaper
Tags
This page is the archive's own catalogue record. The research is the work of Alexander Klink and Julian Wälde, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .