[nsp-sec] DDoS traceback to identify open resolvers

Jason Chambers jchambers at ucla.edu
Wed Jun 5 19:01:06 EDT 2013


Hi all.

Would NSP/ISPs have any interest in a feed of DNS Amp DoS targets for 
use in traceback ?   I was thinking how we might use the visibility we 
have at the enterprise level to help identify more open resolvers and 
the botnets that use them.

Regards,

--Jason



More information about the nsp-security mailing list