OS Exhaustion Flood (T1499.001)

View on ATT&CK

In Playbook

Associated Tactics

  • Impact

Impact (TA0040)

The adversary is trying to manipulate, interrupt, or destroy your systems and data. Impact consists of techniques that adversaries use to disrupt availability or compromise integrity by manipulating business and operational processes. Techniques used for impact can include destroying or tampering with data. In some cases, business processes can look fine, but may have been altered to benefit the adversaries’ goals. These techniques might be used by adversaries to follow through on their end goal or to provide cover for a confidentiality breach.

View on ATT&CK

Procedure Examples

Description Source(s)
Cisco. (n.d.). Detecting and Analyzing Network Threats With NetFlow. Retrieved April 25, 2019. Cisco DoSdetectNetflow
Cloudflare. (n.d.). What is a SYN flood attack?. Retrieved April 22, 2019. Cloudflare SynFlood
Corero. (n.d.). What is a SYN-ACK Flood Attack?. Retrieved April 22, 2019. Corero SYN-ACKflood
Philippe Alcoy, Steinthor Bjarnason, Paul Bowen, C.F. Chui, Kirill Kasavchnko, and Gary Sockrider of Netscout Arbor. (2018, January). Insight into the Global Threat Landscape - Netscout Arbor's 13th Annual Worldwide Infrastructure Security Report. Retrieved April 22, 2019. Arbor AnnualDoSreport Jan 2018