Jan Sabak
Software Testing Departament Manager
Join my presentation on: Simulating DDOS attacks
The presentation will explore the practical and technical aspects of simulating DDoS attacks…
The presentation will explore the practical and technical aspects of simulating DDoS attacks…
Jan is a software quality assurance expert. For almost thirty years he has been working on testing and quality of software and hardware. He holds MSc in Computer Science of Computer Science Department at Warsaw University of Technology. He built and managed Quality Assurance Departments in several companies. Currently he works on his own consulting company (AmberTeam Testing) which strives to assure peaceful sleep of CIOs and project managers through risk measurement and management. He is an active promoter of the knowledge and culture of the quality of software development. He is a founder and ex-member of the Management Board of SJSI (Association for the Quality of Information Systems) aka ISTQB’s Polish Testing Board. He possesses ISTQB CTFL, Full CTAL certificates as well as ISTQB Test Automation Engineer and Performance Tester certificates. He is a co-author of “Agile Testing Foundations: An ISTQB Foundation Level Agile Tester guide” book.
The presentation will explore the practical and technical aspects of simulating DDoS attacks, highlighting the challenges of building scalable cloud-based infrastructures, crafting realistic attack scenarios, and ensuring compliance with ethical and legal guidelines. We’ll showcase the tools and scripts employed, including Python-based orchestration and tools like Hping3 and Scapy, to execute 26 distinct types of attacks—ranging from basic floods to sophisticated amplification techniques. Attendees will gain insights into how to design and conduct stress tests that mimic real-world conditions without jeopardizing operational stability. Key Takeaways: 1. Realistic Simulation Techniques: Learn how to simulate DDoS attacks effectively using scalable cloud-based infrastructures and advanced scripting. 2. Key Challenges in Anti-DDoS Testing: Understand the practical obstacles in testing anti-DDoS systems, including spoofing limitations, infrastructure management, and interpreting results. 3. Actionable Insights for System Validation: Discover how simulated attacks can uncover weaknesses and provide critical validation for anti-DDoS technologies.