wsdd
wsdd copied to clipboard
check if wsdd allows traffic amplification attack
WSD implementations (in general) are said to possibly allow traffic amplification attacks. It has to be checked if wsdd is affected by this as well.
References:
- https://blogs.akamai.com/sitr/2019/09/new-ddos-vector-observed-in-the-wild-wsd-attacks-hitting-35gbps.html
- https://www.zdnet.com/article/protocol-used-by-630000-devices-can-be-abused-for-devastating-ddos-attacks/
Even when wsdd is not, some more remarks should be added to the readme/man page: Do not expose to the internet, check firewall rules.