<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic UDP Bomb in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/udp-bomb/m-p/2459357#M45666</link>
    <description>&lt;P&gt;Hi Expert,&lt;/P&gt;&lt;P&gt;We are always detecting too many UDP bomb event.&lt;/P&gt;&lt;P&gt;It is low severity though. Normally the victim IP is a mobile device.&lt;/P&gt;&lt;P&gt;Is there a way to know what is causing and how to prevent .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jhun&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 13:09:58 GMT</pubDate>
    <dc:creator>Jhun Banzuela</dc:creator>
    <dc:date>2019-03-10T13:09:58Z</dc:date>
    <item>
      <title>UDP Bomb</title>
      <link>https://community.cisco.com/t5/network-security/udp-bomb/m-p/2459357#M45666</link>
      <description>&lt;P&gt;Hi Expert,&lt;/P&gt;&lt;P&gt;We are always detecting too many UDP bomb event.&lt;/P&gt;&lt;P&gt;It is low severity though. Normally the victim IP is a mobile device.&lt;/P&gt;&lt;P&gt;Is there a way to know what is causing and how to prevent .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jhun&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 13:09:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/udp-bomb/m-p/2459357#M45666</guid>
      <dc:creator>Jhun Banzuela</dc:creator>
      <dc:date>2019-03-10T13:09:58Z</dc:date>
    </item>
    <item>
      <title>UDP flood attack can be</title>
      <link>https://community.cisco.com/t5/network-security/udp-bomb/m-p/2459358#M45669</link>
      <description>&lt;P&gt;UDP flood attack can be initiated by sending a large number of UDP &lt;A class="mw-redirect" href="http://en.wikipedia.org/wiki/Packet_%28information_technology%29" title="Packet (information technology)"&gt;packets&lt;/A&gt; to random &lt;A class="mw-redirect" href="http://en.wikipedia.org/wiki/TCP_and_UDP_port" title="TCP and UDP port"&gt;ports&lt;/A&gt; on a remote host. As a result, the distant host will:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Check for the application listening at that port;&lt;/LI&gt;&lt;LI&gt;See that no application listens at that port;&lt;/LI&gt;&lt;LI&gt;Reply with an &lt;A href="http://en.wikipedia.org/wiki/Internet_Control_Message_Protocol" title="Internet Control Message Protocol"&gt;ICMP&lt;/A&gt; &lt;A class="mw-redirect" href="http://en.wikipedia.org/wiki/ICMP_Destination_Unreachable" title="ICMP Destination Unreachable"&gt;Destination Unreachable&lt;/A&gt; packet.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Thus, for a large number of UDP packets, the victimized system will be forced into sending many ICMP packets, eventually leading it to be unreachable by other clients.&lt;/P&gt;&lt;P&gt;To block it you can see the following link&lt;/P&gt;&lt;P&gt;http://kb.cyberoam.com/default.asp?id=1232&lt;/P&gt;</description>
      <pubDate>Thu, 17 Apr 2014 23:23:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/udp-bomb/m-p/2459358#M45669</guid>
      <dc:creator>Ravi Singh</dc:creator>
      <dc:date>2014-04-17T23:23:52Z</dc:date>
    </item>
  </channel>
</rss>

