15–25 min Updated

Denial of Service Attacks

By Malcolm McDonald Founder, Editor-in-ChiefAuthor of Grokking Web Application Security

Sometimes attackers don't need to hack your website, they just want to make it unavailable to others.

Prevalence
Occasional
Exploitability
Moderate
Impact
Harmful

What is a denial of service attack?

A denial of service (DoS) attack is an availability attack in which an attacker floods a website with traffic or expensive requests until it runs out of resources and cannot serve legitimate users. When the traffic comes from many machines at once, typically a botnet, it is called a distributed denial of service (DDoS) attack.

What you'll learn

  • How SYN floods, slow reads and reflected attacks exhaust a server
  • What makes a distributed denial of service attack harder to block
  • How traffic filtering, protection services and scalable design keep a site online
  • Denial of Service Attacks lab

    Tour the ways attackers knock a site offline, from SYN floods and slow reads to reflected attacks and botnet-driven distributed attacks. Midway through, write an IP netmask that blocks the attacking traffic while keeping real users connected.

  • How to prevent Denial of Service Attacks

    The prevention guide covers two approaches:

    • Use Commercial Protection Services
    • Build Your Site to Scale
  • Denial of Service Attacks quiz

    Three questions. Passing marks the lesson complete.

Sources

  • Regex Injection

    Regular expressions are frequently used in web-development, but can be abused by attackers.

  • XML Bombs

    Unsafe treatment of XML entities can make your server vulnerable to attack from specially crafted XML files.

  • Buffer Overflows

    An attacker can use buffer overflows to take your site offline or to inject malicious code.

  • Server-Side Request Forgery

    An attacker can use SSRF vulnerabilities to probe your internal network.