Originally posted by stek
View Post
UDP though, without the 3-way handshake, would at least get past the network stack so it's up to the application make its own defence against spoofed IPs. One form of DDoS attack is to spoof the victims IP as the source address in a DNS lookup request (small UDP packet) sent to multiple DNS servers which then unwittingly each send DNS replies (larger UDP packet) to the victim and anonymising the attacker in the process.
LondonManc's mention re American Netflix content in the UK isn't really 'spoofing', at least not at the protocol level. It's bouncing traffic via a proxy, either a 3rd party managed service, or something you set up on a private server, the later being entirely feasible to cover a sockie's tracks but if going to those lengths you really would need to get out more.
Leave a comment: