다음 화면은 DoS 공격을 실시한 TCP Dump이다. 네트워크 패킷들의 특징으로 보았을 때 무슨 공격을 한 것으로 보이는가?
TCP Dump 화면
16:50:52.357508 IP (tos 0x0, ttl 64, id 15412, offset 0, flags [none], proto ICMP (1), length 28)
192.168.0.10 > 192.168.0.10: ICMP echo request, id 6409, seq 8527, length 8
0x0000: 4500 001c 3c34 0000 4001 bd48 c0a8 000a
0x0010: c0a8 000a 0800 bda7 1909 214f
16:50:52.357536 IP (tos 0x0, ttl 64, id 61920, offset 0, flags [none], proto ICMP (1), length 28)
192.168.0.10 > 192.168.0.10: ICMP echo request, id 6409, seq 9295, length 8
0x0000: 4500 001c f1e0 0000 4001 079c c0a8 000a
0x0010: c0a8 000a 0800 baa7 1909 244f
16:50:52.357561 IP (tos 0x0, ttl 64, id 28711, offset 0, flags [none], proto ICMP (1), length 28)
192.168.0.10 > 192.168.0.10: ICMP echo request, id 6409, seq 9807, length 8
0x0000: 4500 001c 7027 0000 4001 8955 c0a8 000a
0x0010: c0a8 000a 0800 b8a7 1909 264f
16:50:52.357585 IP (tos 0x0, ttl 64, id 22490, offset 0, flags [none], proto ICMP (1), length 28)
192.168.0.10 > 192.168.0.10: ICMP echo request, id 6409, seq 10319, length 8
0x0000: 4500 001c 57da 0000 4001 a1a2 c0a8 000a
0x0010: c0a8 000a 0800 b6a7 1909 284f- 1UDP 플러딩(flooding)
- 2SYN 플러딩(flooding)
- 3Bonk 공격
- 4Land 공격
꿈라CBT