ã¢ã¡ãªã«ãä¸å½ããã©ã¸ã«ããæ»æããDOSæ»æããã£ãã¿ããã Facebook, Instagram, Tinder, other sites all down apparently due to a huge DDOS attack. http://t.co/Amvp7BCxuZ pic.twitter.com/GcNMlCUZGS â Avinash Kunnath (@avinashkunnath) January 27, 2015 Facebookãè½ã¡ãã®ã¯2015å¹´1æ27æ¥15æ20åé ãããã®æéãããµã¤ããè½ã¡ãä¸æéãããè½ã¡ã¦ãã¨ãããã¨ãã»ã» Facebookãç¹ãããªãããµã¤ãè½ã¡ãï¼è½ã¡ãã16ï¼10復活ããã 3:20 PM JSTããããFacebookãã«é害ãçºç 3:27 PM JSTããããInstagramãã«é害ãçºç 4:10 PM JSTã
2014å¹´7ææ«ä»¥éãè¦å¯åºãã»ãã¥ãªãã£ãã³ãã¼ã®ã©ãã¯ãªã©ããå½å ã§DDoSï¼Distributed Denial of Servicesï¼åæ£ãµã¼ãã¹å¦¨å®³ï¼æ»æãç¸æ¬¡ãã§ããã¨ãã¦æ³¨æãå¼ã³ããã¦ãããè¿å¹´ã®DDoSæ»æã®ç¹å¾´ã¯ãæå£ãå¤æ§åãã¦ãããã¨ãä¼æ¥ãçµç¹ãéç¨ãããµã¼ãã¼ã ãã§ã¯ãªããä¸è¬ã¦ã¼ã¶ã¼ãéç¨ãããã¼ã ã«ã¼ã¿ã¼ï¼ããã¼ããã³ãã«ã¼ã¿ã¼ï¼ãè¸ã¿å°ã«ãªããã¨ããããDDoSæ»æã®è å¨ãä½æ¸ãããã«ã¯ãå ¨ã¦ã®ã¦ã¼ã¶ã¼ã注æããå¿ è¦ãããã æ»æãã¼ã¿ãå¢å¹ ããããªãã¬ã¯ã¿ã¼ã DDoSæ»æã¨ã¯ãä¼æ¥ãçµç¹ãéå¶ãããµã¼ãã¼ãªã©ã«å¤§éã®ãã¼ã¿ãä¸æã«éä¿¡ãã¦ããã®ãµã¼ãã¼ãå©ç¨ä¸è½ã«ããæ»æã®ãã¨ã以åã¯ãDDoSæ»æã¯ããããããããã¨å¼ã°ãããè¤æ°ã®ã¦ã¤ã«ã¹ææãã½ã³ã³ã使ã£ã¦è¡ããããã¨ãå¤ãã£ããæ»æè ã¯ããããããå¤æ°ã®ãã½ã³ã³ã«ã¦ã¤ã«ã¹ãææããã¦ä¹ã£åãã
å æ¥ãç§ã管çãã¦ãããµã¼ãã¼ã¸ãntp ãªãã¬ã¯ã·ã§ã³æ»æãçºçãããã¨ãã¡ã¢ãã¾ããã ãã®æ°æ¥å¾ããã®ãã·ã¹ãã 管çã¡ã¢ããµã¼ãã¼ã«ã UDP port 123 ã¸ã®ãã©ãã£ãã¯ãæ¥å¢ããçç¶ãçºçããntpãªãã¬ã¯ã·ã§ã³æ»æãããã«ãåãã ãã¨ãç¥ãã¾ããããã¡ã¤ã¤ã¼ã¦ã©ã¼ã«ã対çæ¸ã¿ã ã£ãããããã¡ã¤ã¤ã¼ã¦ã©ã¼ã«ãã°ãè¨ãããã¨ä»¥å¤ã¯ç¹ã«å¤åã¯ãªãã®ã§ãããå½ç¶ç§ã®ãµã¤ã以å¤ã«ã ntpãªãã¬ã¯ã·ã§ã³æ»æãåãã¦ããçµç¹ãããããã§ãã ntp ãªãã¬ã¯ã·ã§ã³æ»æã®è©³ç´°ã«ã¤ãã¦ã¯ã@police ã®æ å ±ã NTTã³ãã¥ãã±ã¼ã·ã§ã³ãºã®æ¹ãæ¸ãããã¬ãã¼ããç解ã®æå©ãã«ãªãã¾ãã ç§ããã¡ã¤ã¤ã¼ã¦ã©ã¼ã«ã®ãã°ãã¡ã¤ã«ãå ã«ãã©ããªå¥´ããããªãã ããªã ntpãªãã¬ã¯ã·ã§ã³æ»æãçºçããã¦ããã®ã調æ»ãã¦ã¿ããã¨ã«ãã¾ããã ã¾ãããã®æ»æã¯ã³ã³ãã¥ã¼ã¿ã¸ã®ä¾µå ¥ã¨ã¯ç°ãªããã¢ã¯ã»ã¹
ã¯ã©ã¦ãäºæ¥è ã®ç±³ã¯ã©ã¦ããã¬ã¢ã¯2014å¹´2æä¸æ¬ãå社ã®é¡§å®¢ãéç¨ãããµã¼ãã¼ã«å¯¾ãã¦ãæ大ã§400ã®ã¬ããã/ç§ã¨ããåä¾ã®ãªãè¦æ¨¡ã®DDoSï¼åæ£ãµã¼ãã¹å¦¨å®³ï¼æ»æãä»æãããããã¨ãæããã«ãããä¼æ¥ãªã©ãéç¨ããNTPãµã¼ãã¼ï¼æå»åæãµã¼ãã¼ï¼ããæ»æã®è¸ã¿å°ã¨ãã¦æªç¨ãããã¨ããã NTPãµã¼ãã¼ã¨ã¯ãã³ã³ãã¥ã¼ã¿ã¼ããããã¯ã¼ã¯æ©å¨ã®æå»ãåæããããã®ãµã¼ãã¼ã½ãããåã½ããã稼åãããµã¼ãã¼æ©ãæããã¨ããããUNIXãLinuxãªã©ã«æ¨æºã§å«ã¾ãããæ¨æºæãæä¾ããå¥ã®NTPãµã¼ãã¼ã«ã¢ã¯ã»ã¹ãã¦OSã®æå»ãåãããã»ããä»ã®ã³ã³ãã¥ã¼ã¿ã¼ããã®æå»ã®åãåããã«ãçããã NTPãµã¼ãã¼ã«ã¯ãå©ç¨ç¶æ³ãªã©ãé éãã確èªããããã®ç®¡çæ©è½ãããããã®ä¸ã¤ããMONLISTãæ©è½ã ããã®æ©è½ã使ã£ã¦NTPãµã¼ãã¼ã«åãåãããã¨ããã®NTPãµã¼ãã¼ã«éå»ã«ã¢ã¯ã»ã¹ãã
ããã£ãã·ã¥DNSãµã¼ãã¼ã®è¨å®ãå¤æ´ããå½ç¤¾ãµã¼ãã¹ã®å¥ç´è ã®ã¿ã«ã¢ã¯ã»ã¹ãå¶éããã¦ããã ãã¾ããââ2013å¹´8æé ããããããããç¥ãããå ¬éãããã¼ã¿ã»ã³ã¿ã¼äºæ¥è ããããã¤ãã¼ï¼ISPï¼ãåºã¦ãããããªã¼ãã³ãªã¾ã«ãã¼ãã¨å¼ã°ãããã誰ã§ãå©ç¨ã§ããç¶æ ãã®ãã£ãã·ã¥DNSãµã¼ãã¼ããªããä¸é£ã®åãã®ä¸ã¤ã§ããã3æé ããããªã¼ãã³ãªã¾ã«ãã¼ã大è¦æ¨¡ãªDDoSï¼Distributed Denial of Serviceï¼æ»æã«æªç¨ãããã±ã¼ã¹ãåºã¦ãããããå社ã対å¿ãæ¥ãã§ããã®ã ã
ä»å¹´ã«å ¥ã£ã¦ãããæå»åæã«å©ç¨ããNTPï¼Network Time Protocolï¼ãµã¼ãã¼ãè¸ã¿å°ã«ããDDoSæ»æã®è©±é¡ãããè³ã«ããããã«ãªã£ããDDoSæ»æã¨ã¯ããµã¼ãã¼ãªã©ã«å¤§éã®ãã±ãããéãä»ãã¦ããµã¼ãã¹ãæä¾ã§ããªãç¶æ ã«ãã¦ãã¾ãæ»æã®ãã¨ãã«ã¼ã¿ã¼ããµã¼ãã¼ã®ãã°ãè¦ã¦ãè¦æ¨¡ãå°ããã¦ãDDoSããã形跡ãè¦ãçµé¨ããã人ã¯å¤ãã®ã§ã¯ãªãã ãããï¼ æ¨å¹´ã¯DNSãæªç¨ãã大è¦æ¨¡ãªDDoSæ»æã話é¡ã«ãªã£ããDDoSæ»æèªä½ã¯ä»¥åããçºçãã¦ããããæè¿ã¯è¦æ¨¡ã大ããã®ãç¹å¾´ã300Gããã/ç§ã400Gããã/ç§ãªã©ã®ãã©ãã£ãã¯ã観測ããã¦ããã NTPãµã¼ãã¼ãè¸ã¿å°ã«ããDDoSæ»æï¼NTPãªãã¬ã¯ã·ã§ã³æ»æï¼ã«ã¤ãã¦ã¯ãITproã§ããæªç¨ãããæå»åæï¼NTPï¼ãµã¼ãã¼ãæ°æã®DDoSæ»æã§âå 害è âã«ãªãããããããããéå»æ大400ã®ã¬ããã/ç§ã®D
ãããæ°æéã§16ä¸2000ãã®Webãµã¤ããã1ã¤ã®Webãµã¤ãã«å¯¾ãã¦éä¸æ»æãä»æãã¦ããã¨ããã WordPressã使ã£ã¦ããä¸è¬ã¦ã¼ã¶ã¼ã®ããã°ã大è¦æ¨¡ãªãµã¼ãã¹å¦¨å®³ï¼DDoSï¼æ»æã«å æ ãããããã¦ããã®ãè¦ã¤ãã£ãã¨ãã¦ãã»ãã¥ãªãã£ä¼æ¥ã®Sucuriã3æ10æ¥ã®ããã°ã§åé¡ãææããããã®æ»æã§ã¯ããã°ã«ãªã³ã¯ãå¼µããããã¨ãéç¥ãããPingbackãã¨ããæ©è½ãæªç¨ããã¦ããã¨ããã çºç«¯ã¯ãWordPressã使ã£ã¦ããç¹å®ã®äººæ°ãµã¤ããDDoSæ»æãä»æãããã¦ãã¦ã³ãããã¨ã ã£ããSucuriã調ã¹ãã¨ããããã®Webãµã¤ãã®ãµã¼ãã«å¯¾ãã¦æ¯ç§æ°ç¾ä»¶ãã®ãªã¯ã¨ã¹ããéãä»ãã大è¦æ¨¡æ»æãçºçãã¦ãããã¨ãåãã£ãã åãµã¤ãã襲ã£ããªã¯ã¨ã¹ãã¯å ¨ã¦ãWordPressã使ã£ãæ£è¦ãµã¤ãããæ¥ã¦ãããã¨ãå¤æããããæ°æéã§16ä¸2000ãã®Webãµã¤ããããã®
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}