The latest code from Martin Hector https://gist.github.com/marcan/6a2d14b0e3eaa5de1795a763fb58641e
Brings Debian Linux 8/9 (x64) running Samba to its knees
After we stop the attack the system is lagging still
So lets see how we can fix this ..
Hector writes that it is sufficient to do the following
However he has a typo in the tweet. The correct setting should be
[global] max smbd processes = 1000
Here is the video of the attack on the up2date stock Debian Samba without the above option
And here with max smbd processes = 1000 enabled under [global]