
4/25/2023 · Alex Forster, Omer Yoachimik
What this post added
This post details the discovery of CVE-2023-29552, a new DDoS reflection/amplification attack vector leveraging the SLP protocol. It explains the SLP protocol, its exposure on the internet, and its high amplification factor. Cloudflare customers are protected by its automated DDoS protection system. Network operators are advised to block UDP port 427 to prevent their networks from being exploited to launch attacks.