[Mobike] New issue 18: Threat discussion

Pasi.Eronen at nokia.com Pasi.Eronen at nokia.com
Fri Sep 3 08:43:04 EDT 2004


Mohan Parthasarathy wrote:
>
>   1) Unauthenticated attacker directs the traffic stream
>      from B to a third party C, with the intent flooding C
>      with unwanted traffic.
> 
> Is this attack where the unauthenticated attacker is modifying
> the packets of the authenticated client or doing the attack
> independently ?

Both cases need to be considered, but obviously handling the
latter one should be very easy. 

>   2) Authenticated peer A directs the traffic stream from B
>      to a third party C, with the intent of flooding C with
>      unwanted traffic.
> 
>   3) Unauthenticated attacker directs the traffic stream
>      from B to somewhere (perhaps to the attacker or /dev/null), 
>      with the intent of preventing the legitimate peers from 
>      communicating.
> 
> Why is this different from (1) ?

Hmm... perhaps it's not different (Francis also suggested
that they should be merged).

Best regards,
Pasi


More information about the Mobike mailing list