러 계층(클라이언트, 서버, 때로는 네트워크 계층까지)에서 발생할 수 있다. 이러한 공격은 한
번에 한 사용자에게 혹은 다수의 사용자에게 동시에 영향을 끼칠 수 있으며 애플리케이션 성능
저하에서부터 애플리케이션이 완전히 중단되는 피해까지 발생할 수 있다.
DoS
공격을 살펴볼 때에는 가장 가치 있는 서버 리소스가 무엇인지 조사하고 그러한 리소스
를 사용하는
API
를 찾는 것이 최선이다. 서버 리소스의 가치는 애플리케이션에 따라 다르지만
RAM
/
CPU
사용량과 같이 일반적인 것일 수도 있고 큐에서 수행되는 기능(사용자
a
→ 사용
자
b
→ 사용자
c
) 같이 복잡한 것일 수도 있다.
DoS
가 약간의 불편이나 끊김을 일으키는 정도에 그칠 수도 있지만 데이터를 유출하기도 한다.
DoS
시도의 결과로 나타나는 로그와 오류에 주의를 기울이자.
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month, and much more.
O’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
I wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
I’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
I'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.