To request access this dataset you will need to login with an IMPACT account. Accounts are free. If you don't have one please register.
This dataset is no longer available and has a current status of 'Withdrawn'.
Please see the catalog for a listing of currently available datasets.

Summary

DS-0580
DNS AMPL DDOS DEC2015
Dataset
Merit Network, Inc.
Merit Network, Inc.
07/22/2015
07/22/2015
28 (lowest rank is 56)

Category & Restrictions

Traffic Flow Data
Quasi-Restricted
true

Description


A DNS-based amplification DDOS attack

This is a real-world DDoS attack captured at Merit's border router in SFPOP. It's a reflection and amplification Distributed Denial of Service attack (DDoS) that is mostly based on the DNS protocol. The attack appears within WSUe/ft-v05.2015-07-22.140005-0400. The attack victim should appear under 204.38.0.0/21

Additional Details

33.5GB
true
false
merit, network, ddos, dns, dns ampl ddos dec2015, 580, dec2015, ampl, 2015, anonymized, merit network, inc., attack, amplification, based, real, service, 204, distributed, 140005, reflection, denial, border, traffic flow data, 07, appears, ft, router, protocol, 0400, captured, sfpop, victim, wsue, flow, traffic, v05