Web Application DoS/DDoS Testing Methodology
Gunter Ollman · 2014
As the goals and motivations of attackers have evolved, so too have their methods and the amount of effort they are willing to expend in taking down a targeted web application or hosting environment. This white paper outlines a methodology for enumerating the weaknesses in a web application’s architecture and service relationships that can be exploited remotely to cause a DoS condition and identifying steps the application owners can take to detect and prevent such attacks.