Home / Companies / Cloudflare / Blog / Post Details
Content Deep Dive

Understanding and mitigating NTP-based DDoS attacks

Blog post from Cloudflare

Post Details
Company
Date Published
Author
John Graham-Cumming
Word Count
1,243
Company Posts That Month
11
Language
English
Hacker News Points
-
Post removed?
No
Summary

The text discusses NTP-based DDoS attacks, which have become popular recently and caused trouble for some gaming web sites and service providers. These attacks work by exploiting the Network Time Protocol (NTP), a simple UDP-based protocol that can be persuaded to return a large reply to a small request. The amplification factor of NTP is 206x, making it ideal as a DDoS tool. To mitigate these attacks, web site owners should make configuration changes to firewalls and NTP servers. Additionally, implementing BCP-38 would eliminate source IP spoofed attacks of all kinds (DNS, NTP, SNMP, ...).

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.