Decompression bombs are interesting things.  Files with holes, images and
more fit this space.
Before fail2ban and the like I once watched my error logs on a web server
and when it was fashionable to look for attack a specific dir or file to
hack into on like machines I tried compression bomb files to slow down the
script kiddies.   Today that poke in the eye would be seen as a challenge
and might backfire but since it is a reverse denial of service it is worth
remembering.    Most browser and net tools know how to deal with a .gz or
other compressed file when passed it in good faith.    Now that I mentioned
this here the decompression side of scripted tools may well defend

