当前位置:网站首页>Patch NTP server at the beginning of DDoS counterattack
Patch NTP server at the beginning of DDoS counterattack
2022-07-06 02:31:00 【zy18165754120】
According to the DDoS Defense company NSFOCUS call ,IT The industry seems to be right 2014 Relevant at the beginning of the year DDoS The warning of amplifying the increasing risk of attack has responded well , Patched a large number of vulnerable servers .
The US provider announced on Tuesday New statistics , call 3 Global vulnerability in January NTP The number of servers is about 21,000 platform ,5 The month fell again to 17,600 platform . This is lower than 2013 year 12 Of the month 432,120 people .
however , The system administrator still needs to finish the work . The report also claims that , It can enlarge the flow 700 Times more NTP The number of amplifiers has increased from 12 Of the month 1,224 One added to today's 2,100 individual .
“US-CERT And network time protocol strongly recommend that system administrators ntpd Upgrade to 4.2.7p26 Or later ,”NSFOCUS say .
“4.2.7p26 Users of earlier versions should use noquery To block all status queries , Or use disable monitor To disable ntpdc –c monlist command , At the same time, other status queries are still allowed .”
As early as 1 month , The United States CERT Just warn , Using public server NTP Zoom in DDoS The threat of attack is growing .
If it's not properly protected , The global NTP The ubiquity of servers makes them potentially dangerous agents for such attacks . A series of connected devices are used NTP To synchronize their clocks .
Attackers can get through “monlist” Query the last of the requests to connect to the server 600 individual IP List of addresses , Thus, it is quite easy to take advantage of open NTP The server .
Then what they need to do is disguise the source address as the victim's source address , Overwhelm them by sending a large number of results IT System .
Suggest upgrading to a new one NTP Version will be automatically disabled monlist function .
Network security company Incapsula stay 3 A project released in September DDoS Threat situation Research Show , since 1 Since the month ,NTP Amplification attacks have undergone a major shift , Maximum attack reached 180Gbps.
边栏推荐
- 729. My schedule I / offer II 106 Bipartite graph
- 【无标题】数据库中一条查询SQL执行的过程
- [Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 9
- Prepare for the autumn face-to-face test questions
- Formatting occurs twice when vs code is saved
- Sword finger offer 29 Print matrix clockwise
- [postgraduate entrance examination English] prepare for 2023, learn list5 words
- 机器学习训练与参数优化的一般过程 (讨论)
- Keyword static
- [Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 24
猜你喜欢
![[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 19](/img/7c/f728e88ca36524f92c56213370399b.jpg)
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 19

Blue Bridge Cup group B provincial preliminaries first question 2013 (Gauss Diary)

Spark accumulator
![[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 8](/img/16/33f5623625ba817e6e022b5cb7ff5d.jpg)
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 8

Zero foundation self-study STM32 - Review 2 - encapsulating GPIO registers with structures

High number_ Vector algebra_ Unit vector_ Angle between vector and coordinate axis

Building the prototype of library functions -- refer to the manual of wildfire
![[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 6](/img/38/51797fcdb57159b48d0e0a72eeb580.jpg)
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 6

Advanced technology management - what is the physical, mental and mental strength of managers

The ECU of 21 Audi q5l 45tfsi brushes is upgraded to master special adjustment, and the horsepower is safely and stably increased to 305 horsepower
随机推荐
在GBase 8c数据库中使用自带工具检查健康状态时,需要注意什么?
SSM assembly
Bigder: I felt good about the 34/100 interview, but I didn't receive the admission
[robot hand eye calibration] eye in hand
Zero foundation self-study STM32 - Review 2 - encapsulating GPIO registers with structures
2022 eye health exhibition, vision rehabilitation exhibition, optometry equipment exhibition, eye care products exhibition, eye mask Exhibition
Black high-end responsive website dream weaving template (adaptive mobile terminal)
MySQL winter vacation self-study 2022 11 (5)
Exness: Mercedes Benz's profits exceed expectations, and it is predicted that there will be a supply chain shortage in 2022
Six stone management: why should leaders ignore product quality
模板_快速排序_双指针
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 16
Multiple solutions to one problem, asp Net core application startup initialization n schemes [Part 1]
550 permission denied occurs when FTP uploads files, which is not a user permission problem
Blue Bridge Cup group B provincial preliminaries first question 2013 (Gauss Diary)
SQL table name is passed as a parameter
[Yunju entrepreneurial foundation notes] Chapter II entrepreneur test 12
数据准备工作
RDD conversion operator of spark
Y a - t - il des cas où sqlcdc surveille plusieurs tables et les associe à une autre? Tout fonctionne dans MySQL