PUSH and ACK floods explained

PUSH floods and ACK floods are denial of service attacks based on the PSH and ACK flags.

Since these flags require additional processing it may be possible to overwhelm a service by setting these flags on numerous requests.

Mitigation

Proxy filters may drop appropriate packets with these flags set when the system is considered to be under attack.[1]

See also

Notes and References

  1. Web site: PUSH and ACK Flood. https://web.archive.org/web/20220407094517if_/https://www.f5.com/services/resources/glossary/push-and-ack-flood. 2022-04-07.