NRDAX-T0188 - Oversized Control-Message Array CPU Burn
Compute amplification · P2P and gossip · no bound · active · first seen 2026-01-01
provenance: Reproduced in NullRabbit's attack-reproduction pipeline
mechanism
CVE-2026-49866: gossipsub oversized IHAVE/IWANT control-message arrays (huge messageID lists) → per-ID processing → CPU DoS
live exposure
No exposure data. Slashr ↗ has no risk signal mapped to this technique yet — absence of data is not absence of exposure.
instances (1)
| chain | primitive | fidelity | origin | reproducer (bundle) | source |
|---|---|---|---|---|---|
| libp2p | gossipsub_ihave_iwant_flood | lab | reverse-engineered-cve | gossipsub_ihave_iwant_flood | CVE-2026-49866 ↗ |
references
cve: CVE-2026-49866
vendor-advisory: GHPR-Conflux-Chain-conflux-rust-3539
related (Compute amplification)
NRDAX-T0006 - Async Runtime Blocking VM Execution active NRDAX-T0076 - Expensive Debug RPC Compute Amplification active NRDAX-T0088 - GetData Request Flood active NRDAX-T0100 - Handshake Crypto CPU Burn active NRDAX-T0139 - Legacy Sighash Quadratic CPU Blowup active NRDAX-T0143 - Malformed Field Gossip Before Validation active NRDAX-T0148 - Malformed KZG Proof Mismatch DoS active NRDAX-T0166 - Move Verifier Fixpoint CPU Exhaustion active
cite
https://nrdax.com/techniques/NRDAX-T0188
plain
NRDAX Registry. Technique NRDAX-T0188.
bibtex
@misc{nrdax_NRDAX_T0188,
title = {Oversized Control-Message Array CPU Burn (NRDAX-T0188)},
howpublished = {NRDAX Registry},
url = {https://nrdax.com/techniques/NRDAX-T0188},
} json (csl)
{
"id": "nrdax-NRDAX-T0188",
"type": "dataset",
"title": "Oversized Control-Message Array CPU Burn (NRDAX-T0188)",
"URL": "https://nrdax.com/techniques/NRDAX-T0188",
"publisher": "NRDAX Registry"
} badge
[](https://nrdax.com/techniques/NRDAX-T0188-oversized-control-message-array-cpu-burn)
use from the CLI
Retrieve or cite this technique from a script or the terminal with the NRDAX Python library & CLI.
nrdax get NRDAX-T0188 nrdax cite NRDAX-T0188 --format bibtex