20 Sep
2000
20 Sep
'00
22:04
On Tue, 19 Sep 2000, Corvin Russell wrote:
Just out of curiosity--
What exactly is this output of nmap a function of (please, no tautologous responses), and how is it important? What determines the TCP sequence numbers? How real a vulnerability is created by their predictability?
TCP Sequence Prediction: Class=random positive increments Difficulty=5272173 (Good luck!)
Check out the following URL's for more info: http://packetstorm.securify.com/docs/infosec/sequence_attacks.txt http://www.nai.com/nai_labs/asp_set/advisory/07_tcpspoofing_adv.asp http://www.xenos.net/pub/security/tools/all http://www.s0d.org/books/www.bitpunk.com/ipext.pdf That should give you the information you need. Gr Stefan