Playing games with an attacker (2016)(blog.0x3a.com) |
Playing games with an attacker (2016)(blog.0x3a.com) |
So I decided to mess with them: Give a plausible response, but send 1 byte per second. Or send a gz bomb. Or an infinite redirect loop.
The smarter scanners didn't fall for them and generally stopped scanning for a few days. The dumb ones believed everything I fed them, and their attack traffic multiplied heavily.