浏览全部资源
扫码关注微信
上海交通大学 网络信息中心,上海 200240
[ "姜开达(1980-),男,安徽池州人,上海交通大学工程师,主要研究方向为网络与信息安全。" ]
[ "章思宇(1989-),男,上海人,上海交通大学助理工程师,主要研究方向为网络与信息安全。" ]
[ "孙强(1975-),男,山东郓城人,上海交通大学助理工程师,主要研究方向为系统运维和网络安全。" ]
网络出版日期:2014-10,
纸质出版日期:2014-10-25
移动端阅览
姜开达, 章思宇, 孙强. 基于NTP反射放大攻击的DDoS追踪研究[J]. 通信学报, 2014,35(Z1):31-35.
Kai-da JIANG, Si-yu ZHANG, Qiang SUN. Research on tracking DDoS based on NTP reflection amplification attack[J]. Journal on communications, 2014, 35(Z1): 31-35.
姜开达, 章思宇, 孙强. 基于NTP反射放大攻击的DDoS追踪研究[J]. 通信学报, 2014,35(Z1):31-35. DOI: 10.3969/j.issn.1000-436x.2014.z1.007.
Kai-da JIANG, Si-yu ZHANG, Qiang SUN. Research on tracking DDoS based on NTP reflection amplification attack[J]. Journal on communications, 2014, 35(Z1): 31-35. DOI: 10.3969/j.issn.1000-436x.2014.z1.007.
摘 要:提出了一种利用NTP反射型放大攻击的特点,通过对中国大陆开放公共NTP服务的主机定期发起主动探测(执行monlist指令),利用返回信息对全球范围NTP反射类DRDoS攻击事件进行长期追踪观察和统计分析。追踪从2014年2月开始,初始探测范围为大陆近1.4万台NTP服务主机,每隔2 h一个周期持续进行了164天,观测到了针对数十万个IP地址的疑似DDoS攻击行为。
Based on characteristics of NTP reflection amplification attack
proposes a method of regularly launching ac
Matthew prince,technical details behind a 400 Gbit/s NTP amplification DDoS attack [EB/OL ] . http://blog.cloudflare.com/technical-details-behind-a-400gbit/s-ntp-amplification-ddos-attack http://blog.cloudflare.com/technical-details-behind-a-400gbit/s-ntp-amplification-ddos-attack .
CNCERT . 关于警惕近期多发NTP反射放大攻击的预警通报 [EB/OL ] . http://www.cert.org.cn/publish/main/10/2014/20140314085001237248 948/20140314085001237248948_.html,2014 http://www.cert.org.cn/publish/main/10/2014/20140314085001237248 948/20140314085001237248948_.html,2014 .
CNCERT . On guard against recent multiple NTP reflection/ amplification attacks alert notification [EB/OL ] . http://www.cert.org.cn/publish/main/10/2014/20140314085001237248948/20140314085001237 248948_html,2014 http://www.cert.org.cn/publish/main/10/2014/20140314085001237248948/20140314085001237 248948_html,2014 .
洪海 DDoS 放大攻击原理及防护方法 [EB/OL ] . http://www.nsfocus.com/images/6_about/journal/12_20_023_j.pdf,2013 http://www.nsfocus.com/images/6_about/journal/12_20_023_j.pdf,2013 .
HONG H DDoS amplification attacks principles and protective methods [EB/OL ] . http://www.nsfocus.com/images/6_about/journal/12_20_023_j.pdf,2013 http://www.nsfocus.com/images/6_about/journal/12_20_023_j.pdf,2013 .
KUHRER M , HUPPERICH T , ROSSOW C , et al . Exit from hell? reducing the impact of amplification DDoS attacks [A ] . 23rd USENIX Security Symposium [C ] . San Diego,California , 2014 .
Christian Rossow,amplification hell:revisiting network protocols for DDoS abuse [A ] . 21st Network and Distributed System Security Symposium [C ] . San Diego,California , 2014 .
JENKINS Q . Answers about recent DDoS attack on spamhaus [EB/OL ] . http://www.spamhaus.org/news/article/695/answers-aboutrecent-ddos-attack-on-spamhaus,2013 http://www.spamhaus.org/news/article/695/answers-aboutrecent-ddos-attack-on-spamhaus,2013 .
DURUMERIC Z , BAILEY M J , HALDERMAN A . An internet-wide view of internet-wide scanning [A ] . 23rd USENIX Security Symposium , San Diego,California , August 2014 .
WALT KELLY P . ntpq-standard NTP query program [EB/OL ] . http://www.eecis.udel.edu/~mills/ntp/html/ntpq.html,2012 http://www.eecis.udel.edu/~mills/ntp/html/ntpq.html,2012 .
IANA . IANA IPv4 address space registry [EB/OL ] . http://www.iana.org/assignments/ipv4-address-space/ipv4-address-space.xml,2014 http://www.iana.org/assignments/ipv4-address-space/ipv4-address-space.xml,2014 .
0
浏览量
0
下载量
0
CSCD
关联资源
相关文章
相关作者
相关机构