The somewhat illegal fix for NTP attacks

Fri Feb 21 22:13:24 UTC 2014

On 21 February 2014 14:08, Baldur Norddahl <baldur.norddahl at>wrote:

> Hi
> The following would probably be illegal so do not actually do this. But
> what if... there are just 4 billion IPv4 addresses. Scanning that
> address-space for open NTP is trivially done in a few hours. Abusing these
> servers for reflection attack is as trivial, hence the problem. How can we
> get the responsible parties to fix their NTP servers?
> Answer: DDoS them. With their own service.

/me gets some popcorn and waits for the show.

Landon Stewart <LandonStewart at>

