Comments

  • jane232
    link
    fedilink
    English
    arrow-up
    2
    ·
    2 months ago

    One option is to hijack a prefix by announcing a more specific one. This should then route traffic to the more specific prefix to your AS. You can then analyse and forward the traffic, attempt to impersonate a server within this range or simply drop the incoming packets.

    As the author described, this case might be a bit more tricky, as BGP prefers shorter routes to longer ones. However, it seems that some longer-than-necessary routes were in use.