5. of Denial of Service I
An attacker can make a client unavailable or unusable without ever authenticating, but the problem goes away when the attacker stops (client, anonymous, temporary).
Threat |
|
The attacker is sitting between the client and the server, performing deep packet inspection and selectively dropping packets to block access to the endpoint. |
|
CAPEC |
CAPEC-590 – IP address blocking |
ASVS |
N/A |
CWE |
N/A |
Mitigations |
|
|