A ping packet may become inappropriate to perform a DoS attack by sending continuous ping packets to the IP address of the target. This attack is called Ping of Death. Continuous ping will overflow the buffer into the target system and cause it to crash.
We often use the CMD command "Ping" to check mainly whether a server or a Gateway is in operation. However, the ping command can also be used for some other purposes.
By looking at the basics, then a ping packet is generally 56 bytes or 84 bytes (including the IP header). However, a ping packet can also become so large that it reaches up to 65.536 bytes.
Well, this is the negative side of the ping packet. When the ping packet size grows abnormally, forming an inappropriate packet ping to attack a system, this type of attack is called “Ping of death (Death Ping)Attack.
How does the Ping of death attack work?
Not all computers can handle data larger than a fixed size. So when a Ping of death packet is sent from a computer (computer-source) to a target machine, the ping pack is fragmented in smaller packet groups.
A fragment consists of 8 octacts. When these packets reach the target computer, they arrive in pieces. Thus, the target computer reconfigures the inappropriate packets it receives into tracks. However, the entire assembled package causes it to overflow buffer on the target computer.
This buffer flow often causes the system to collapse, making the system more vulnerable to attacks.
Once the system becomes more vulnerable to attacks, it allows more attacks, such as one injection trojan horse on the target machine.
A simple tutorial on how to perform DoS attack using Ping of death with CMD:
Caution: This is for educational purposes only. It's nothing great but you can use it to find out.
Let's go see the steps:
- Open Notepad
- Copy the following text to the notebook
[su_note note_color = ”# f3db91 ″ radius =” 7 ″]: loop
ping <IP address> -l 65500 -w 1 -n 1
goto: loop [/ su_note]
In the above command, replace the <IP address> with an IP address.
- Save the Notebook with any name. Like, for example, dos.txt
- Right-click dos.txt and click Rename.
- Change the extension from .txt to .bat
- So now the file name should be dos.bat
- Double-click on it and you will see a command line running with lots of pings.