Mitigate Slow HTTP GET/POST Vulnerabilities in the Apache HTTP Server

A slow HTTP Denial of Service attack (DoS), otherwise referred to as the Slowloris HTTP attack, makes use of HTTP GET requests to occupy all available HTTP connections permitted by a web server. It takes advantage of a vulnerability in thread-based web servers, which wait for entire HTTP headers to be received before releasing the open connection.

Read full article on Dzone

 


Date:

Categorie(s):