[AusNOG] UDP based HTTP attack?

Joseph Goldman joe at apcs.com.au
Sun Sep 20 10:01:59 EST 2015


Hi *,

  One of my webservers just went under DDoS attack so before blackholing 
the IP I decided to capture some traffic - At a quick glance I could see 
it was port 80 but after firing up wireshark I saw it was all UDP - is 
it common to send UDP payloads to Port 80? I was hoping to get the URI 
in the request to know which site in particular was getting targeted, 
but oh well.

Thanks,
Joe


More information about the AusNOG mailing list