- Back to Home »
- Hacking , Tutorial »
- Ping of Death
Posted by : Beauty Cyber Squad Official
Friday, August 9, 2019
![Hasil gambar untuk Ping of Death](https://www.cloudflare.com/img/learning/ddos/ping-of-death-ddos-attack/attack-mitigation.png)
There are 3 pc connected to the router. But 2 of the 3 pc attack 1 pc that is marked in red.
Explanation:
Ping of death is a form of DDOS attack using the method of requesting a reply from the server to be attacked. This attack is done by making a request for a reply from the server continuously so that the server will be fulfilled by a reply request from 1 pc and cause the server is unable to service requests from other PCs.
Ping 192.168.88.254 -t -l 65500
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgr5KW1oa0w-5bj5NHFy8lVIQVvK0x4hVZNxpeS8Kd_2czqRcYjb8-9H7ka5WZ1lIKi77tmiaTITb5bHa2DZiox2Xxm9Ozpvl5qMERi190STmlAIQ9KlS_3qXjXlCiGM33eTgv_nRm4HXs/s400/Picture2.png)
How to carry out an attack:
Use the Command Prompt and type ping [ip address] -t -l 65500
example: ping 192.168.88.254 -t -l 65500.
Information:
-t is a command to recursively request to the server
-l is a command to request a size request from the server
65500 is the maximum size that can be sent
Effects of an attack:
It can be seen significantly that after pinging of death the flow of the internet immediately experienced a significant increase in traffic.
Prevention :
Doing the installation of IDS (instrution detection system), in this case the IDS used is Snort. Intrusion Detection System is a tool used to prevent network attacks from outside.
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgOM0NcRXvz_yPbwtJxxGqn_o7vft_4sGRxw-4cR6Y1CKUKdKoAfd3YwUfmCyHKIf1-nNn6KGt8bgUHnF9q7NleNkX1LZI5FifO3kif2G1Pm7_ZLXA1GticdNjUnUKxEm0cQ2XoYzX_xko/s320/Picture3.png)
Then check the ip that has been set on the computer.
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgzYBXXK9U0e17C-VdhQr3bHyMkYBWlk3yWLqwHN2Kg5O_-1XYrGpUDrYBy6ffF9JpP7lLKaXv6E0TIZrmp9cI8xd6fDPsHBvtCIxSJTZoWktUku69-6zQdEvp-Ri3Psxy9ay6otRMABgw/s400/Picture4.png)
The next step is to configure it on /etc/snort/snort.conf
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgbxfC4cmFsk-dyXHUP5_5D4g_HuLvwxKgnBA5-6utzKBkrRMGj4lHsovCpH8Z-NJ9dcVeF47kJ_oPSSbiikGvTHZ9l8LOAe8GXjQiHidFBFy-gdzVTIbRje8ov5J2jVbD0Ag_KEOfpBTM/s400/Picture5.png)
Next, edit the snort rule to deal with ping of death attacks.
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhxKhCeS6MbxQvqc_Tyo7I-wqM8g1YsWJfF5jMjH7VA16sjyFgzpxkCb34n38uQSvBD4Aaw-QHRkwuCS-4HgUok-zShLKh8AW8QgTZsMKPwCClAFCpzu7Nn5vcNVybcOE772C0cef4PaUk/s400/Picture6.png)
Then run a snort So when done ping of death will be detected by Snort,
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEii3RXTZ4cZYNTSZanpzrMmX4lyXr5q5ulNvdtxp-f1Y1d7DLs7a3zvwXGsvNjpsr7sihmhOIK-BZaihE5ntkAmjQwReQZ20sJ1s0BRImkJWcBLnZROMbin1INZECmDPtQWDmvND9X5aoQ/s400/Picture7.png)
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiqsuyisCePke45zmM5rWfnPia7g26rDqMK7QlftmLwl5_gv7Vv3Kf-gP3JHUiw4lPyFqtFenKc8K3aHLhmQba9ABDtTFQBV1XWGI5uPZPj60aB4lCakBudRlzTburtF013Hf_9s7J_qZA/s400/Picture8.png)
Then when done ping of death will be detected by Snort.
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiJNvklTJK5m5qgCxrEmEXC87V-d8_zoLYYuRvHjSc97mRB7zcJvDfQN2zdRCoMkQzyPlTKdtddC7f9aSjpjHQLtbvUjtzLsDRwnvQ7VjF-x65nUH_d7_Eja9BPRkLuu_qqbWDTkuzbPiw/s400/Picture9.png)