XMPP and the ‘billion laughs’ DoS attack... continued


Artur Hefczyc TigaseTeam
Added almost 7 years ago

Thanks to isode folks and their article I got to know about the issue. I regret to say Tigase was not included in original tests and I was not notified about the potential problem.

I quickly checked Tigase myself and the good news is, similarly to M-Link XMPP Server, Tigase "is not (and never has been) vulnerable to this attack, no action is therefore required of Tigase users". :-)