July 11, 2001
DoS risk from Zip of death attacks on AV software?
Author: JT Smith
The Register covers a heated debate in the security industry over "Zip of death" attacks that could cripple anti-virus and content-filtering packages. The attacks work by sending a client a file that can be as small as 42KB and bulking up to 16GB once decompressed. The news caused Microsoft to issue a security alert; other security firms and consultants say there's no news here.