handbook/templates/INCIDENT REPORT TEMPLATE.md

13 lines
1.1 KiB
Markdown
Raw Normal View History

2024-08-25 19:02:08 +00:00
| | |
| ------------------------------------------------------------------------------------------------------------------------------------------------------------ | --- |
| Section 1: Identify the type of attack that may have caused this <br><br>network interruption | |
| One potential explanation for the website's connection timeout error message is:<br><br> <br><br>The logs show that: <br><br> <br><br>This event could be: | |
| |
|---|
|Section 2: Explain how the attack is causing the website to malfunction|
|When website visitors try to establish a connection with the web server, a three-way handshake occurs using the TCP protocol. Explain the three steps of the handshake:<br><br>1.<br><br> <br><br>2. <br><br> <br><br>3.<br><br> <br><br>Explain what happens when a malicious actor sends a large number of SYN packets all at once:<br><br> <br><br>Explain what the logs indicate and how that affects the server:|