Old Vulnerabilities In New Protocols? Headaches About IPv6 Fragments presented at RSAeu 2013

by Eric Vyncke,

Summary : There is no doubt anymore: IPv6 is more and more deployed and is here to stay. While this may appear as a new and shiny protocol, IPv6 is rather old (1997) and was designed prior the discovery of IPv4 vulnerabilities. This session explains how fragmentation is done in IPv6 and covers old vulnerabilities (overlapping fragments, blind scanning ...) but also specific ones: bypassing stateless ACL.
