A user who calls himself HybrisDisaster has published a proof-of-concept exploit for the ASP.NET vulnerability on GitHub. The vulnerability, identified as CVE-2011-3414, was disclosed in December at the Chaos Communication Congress, Europe’s largest and oldest hacker conference. Microsoft published a security advisory and released a patch for the flaw. A single specially crafted. crafted. request can consume 100% of one CPU core for between 90 — 110 seconds. An attacker could potentially repeatedly issue such requests, causing performance to degrade.”]

