Security researchers from Denmark-based TDC Security Operations Center have dubbed the new attack techniqueBlackNurse.
Imagine what BlackNurse attack could have done if it was used in the recent Dyn attack.
This even applied to customers with large internet uplinks and large enterprise firewalls in place.
We had expected that professional firewall equipment would be able to handle the attack.
It does not matter if you have a 1 Gbit/s Internet connection.
The impact we see on different firewalls is typically high CPU loads.
All firewalls we have seen recover when the attack stops.
They have already discovered about 95 such DDoS attacks in the past two years.
The researchers have given the specific models which are vulnerable to BlackNurse attack onthis blog post.
Cisco surprisingly doesnt consider the BlackNurse attack as a security issue though it has not justified why.
The Sans Institute has its own brief write-up of the attackhere.
source: www.techworm.net