当前位置:网站首页>Patch NTP server at the beginning of DDoS counterattack
Patch NTP server at the beginning of DDoS counterattack
2022-07-06 02:31:00 【zy18165754120】
According to the DDoS Defense company NSFOCUS call ,IT The industry seems to be right 2014 Relevant at the beginning of the year DDoS The warning of amplifying the increasing risk of attack has responded well , Patched a large number of vulnerable servers .
The US provider announced on Tuesday New statistics , call 3 Global vulnerability in January NTP The number of servers is about 21,000 platform ,5 The month fell again to 17,600 platform . This is lower than 2013 year 12 Of the month 432,120 people .
however , The system administrator still needs to finish the work . The report also claims that , It can enlarge the flow 700 Times more NTP The number of amplifiers has increased from 12 Of the month 1,224 One added to today's 2,100 individual .
“US-CERT And network time protocol strongly recommend that system administrators ntpd Upgrade to 4.2.7p26 Or later ,”NSFOCUS say .
“4.2.7p26 Users of earlier versions should use noquery To block all status queries , Or use disable monitor To disable ntpdc –c monlist command , At the same time, other status queries are still allowed .”
As early as 1 month , The United States CERT Just warn , Using public server NTP Zoom in DDoS The threat of attack is growing .
If it's not properly protected , The global NTP The ubiquity of servers makes them potentially dangerous agents for such attacks . A series of connected devices are used NTP To synchronize their clocks .
Attackers can get through “monlist” Query the last of the requests to connect to the server 600 individual IP List of addresses , Thus, it is quite easy to take advantage of open NTP The server .
Then what they need to do is disguise the source address as the victim's source address , Overwhelm them by sending a large number of results IT System .
Suggest upgrading to a new one NTP Version will be automatically disabled monlist function .
Network security company Incapsula stay 3 A project released in September DDoS Threat situation Research Show , since 1 Since the month ,NTP Amplification attacks have undergone a major shift , Maximum attack reached 180Gbps.
边栏推荐
- Multiple solutions to one problem, asp Net core application startup initialization n schemes [Part 1]
- 3D drawing ()
- ftp上传文件时出现 550 Permission denied,不是用户权限问题
- 从顶会论文看2022年推荐系统序列建模的趋势
- Easy to use js script
- [robot library] awesome robots Libraries
- Zero foundation self-study STM32 - Review 2 - encapsulating GPIO registers with structures
- Déduisez la question d'aujourd'hui - 729. Mon emploi du temps I
- General process of machine learning training and parameter optimization (discussion)
- 【MySQL 15】Could not increase number of max_ open_ files to more than 10000 (request: 65535)
猜你喜欢
2022 edition illustrated network pdf
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 24
剑指 Offer 29. 顺时针打印矩阵
论文笔记: 图神经网络 GAT
爬虫(9) - Scrapy框架(1) | Scrapy 异步网络爬虫框架
Crawler (9) - scrape framework (1) | scrape asynchronous web crawler framework
Li Kou today's question -729 My schedule I
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 6
一个复制也能玩出花来
Use image components to slide through photo albums and mobile phone photo album pages
随机推荐
继承的构造函数
[coppeliasim] 6-DOF path planning
Use the list component to realize the drop-down list and address list
[coppeliasim] efficient conveyor belt
Global and Chinese markets of general purpose centrifuges 2022-2028: Research Report on technology, participants, trends, market size and share
Minecraft 1.16.5 生化8 模组 2.0版本 故事书+更多枪械
Sword finger offer 30 Stack containing min function
微软语音合成助手 v1.3 文本转语音工具,真实语音AI生成器
HDU_ p1237_ Simple calculator_ stack
SQL table name is passed as a parameter
Pat grade a 1033 to fill or not to fill
The ECU of 21 Audi q5l 45tfsi brushes is upgraded to master special adjustment, and the horsepower is safely and stably increased to 305 horsepower
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 23
Reset nodejs of the system
Global and Chinese markets of screw rotor pumps 2022-2028: Research Report on technology, participants, trends, market size and share
Keyword static
Looking at the trend of sequence modeling of recommended systems in 2022 from the top paper
Zero basic self-study STM32 wildfire review of GPIO use absolute address to operate GPIO
力扣今日题-729. 我的日程安排表 I
ReferenceError: primordials is not defined错误解决