2020DDoS¹¥»÷Ì¬ÊÆ±¨¸æ|¼òµ¥ÍÅ»ïµÄ¹¥»÷×ÜÁ÷Á¿×î¸ßµÖ´ï3624TB£¬ÊÇ2019ÄêÁ½±¶ÒÔÉÏ
2021-01-21
2020Ä꣬йÚÒßÇé¸øÈ«Çò´øÀ´ÁËÖØ´óµÄ¹¥»÷ºÍÓ°Ï죬¹ú¼Ê¹ØÏµ·çÚÜÔÆ¹î¡£Ëæ×Å5GÊÖÒÕµÄÒ»Ö±Éú³¤£¬ÎÒÃÇÉî¿Ì¸ÐÊܵ½¸÷·½ÊÆÁ¦ÔÚÍøÂç¿Õ¼äÖеÄÒ»´Î´ÎÒõÏÕ²©ÞÄ¡£¹ú¼Ê´óÊÂÎñÍùÍù»á¸øºÚ¿Í´´Á¢ÍøÂç¹¥»÷µÄʱ»ú£¬DDoS¹¥»÷ʱ¼ä¡¢ÊÖ·¨¡¢Ä¿µÄºÍÆ«ºÃÒ²Ô½À´Ô½ÖØ´ó¡£ÎªÁ˸ú×ٺͷºÆðDDoS¹¥»÷µÄÈ«¾ÖÌ¬ÊÆ£¬AG¹«Ë¾¿Æ¼¼ºÍÖйúµçÐÅÔÆµÌÍŽáÐû²¼ÁË¡¶2020DDoS¹¥»÷Ì¬ÊÆ±¨¸æ¡·¡£
±¾±¨¸æ´Ó¹¥»÷´ÎÊý¡¢Á÷Á¿¡¢¹¥»÷ÀàÐÍ¡¢Ê±¼ä¡¢µØÇø¡¢ÐÐÒµµÈ¶à¸öά¶È£¬ÒÔ¼°´Ó¹¥»÷×ÊÔ´¡¢ÍÅ»ïÐÔÐÐΪ¡¢ÎïÁªÍøºÍ½©Ê¬ÍøÂçËĸöÊӽǣ¬Á¦ÕùÖÜÈ«ÆÊÎö2020ÄêµÄDDoSµÄת±äºÍÑݽø£¬ÒÔ±ãÅ×שÒýÓñ£¬×ÊÖú¸÷×éÖ¯/»ú¹¹Ò»Á¬¸ÄÉÆ×ÔÉíÍøÂçÇå¾²·ÀÓùϵͳ¼°ÊÖÒÕ¡£

¿´·¨Ò»£º2020ÄêDDoS¹¥»÷´ÎÊýºÍ×ÜÁ÷Á¿Ï½µ£¬¹ú¼ÒÖ÷¹Ü²¿·Ö¿ªÕ¹µÄ“¾»Íø2020”רÏîÖÎÀíЧ¹ûÏÔ×Å
2020Äê £¬AG¹«Ë¾¿Æ¼¼¼à¿Øµ½DDoS¹¥»÷´ÎÊýΪ15.25Íò´Î£¬¹¥»÷×ÜÁ÷Á¿Îª38.65ÍòTB£¬Óë2019ÄêͬÆÚÏà±È£¬¹¥»÷´ÎÊýïÔÌÁË16.16%£¬¹¥»÷×ÜÁ÷Á¿Ï½µÁË19.67%¡£

¿´·¨¶þ£ºÊÜйÚÒßÇ鱬·¢µÄÓ°Ï죬º£ÄÚÖÙ´º·ÝµÄDDoSÊýÄ¿¼¤Ôö£¬¹¥»÷ÊÆÁ¦Ö÷ÒªÀ´×Ô¾³Í⣬ÃÀ¹úÊÇ×î´ó¾³Íâ¹¥»÷ȪԴ¹ú
ÒßÇéʱ´úÔâÊܵÄÍøÂç¹¥»÷ÓÐÔöÎÞ¼õ¡£ÌØÊâÊÇÖÙ´º·ÝDDoSÊýÄ¿¼¤Ôö¡£

1-4Ô·ݵĹ¥»÷ÖУ¬74.21%µÄ¹¥»÷¶¼À´×ÔÍâÑó¡£ÃÀ¹úÊÇ×î´ó¾³Íâ¹¥»÷ȪԴ¹ú£¬¹¥»÷Õ¼±È24%¡£
¿´·¨Èý£º5GÇéÐÎϵÄDDoS¹¥»÷´ø¿íÔöÌí£¬Æ½¾ù¹¥»÷·åÖµÌáÉý£¬ÖÐСÐ͹¥»÷Ìæ»»Ð¡Ð͹¥»÷Õ¼Ö÷µ¼Ö°Î»¡£
´ÓÀúÊ·Ç÷ÊÆ×ª±äÀ´¿´£¬Æ½¾ù¹¥»÷·åÖµ×Ô2018ϰëÄêÆðÒѾ½øÈëÁËеÄÌݶȡ£2020Ä꣬18.16%µÄ¹¥»÷·åÖµÔÚ5-10GbpsÖ®¼ä£¬ÔÚËùÓÐÇø¼äÖÐÕ¼±È×î¸ß¡£Ïà±È2019Äê¹¥»÷·åÖµÏò1-5Gµ¥²à·Ö½â£¬2020ÄêµÄ¹¥»÷·åÖµÔÚ5-50GµÄ¸÷Çø¼äÂþÑÜÇ÷ÓÚÆ½¾ù£¬5GbpsÒÔϵÄС¹æÄ£¹¥»÷±ÈÀýÓÐËùïÔÌ¡£

¿´·¨ËÄ£ºDDoS·´ÉäÐ͹¥»÷ÊýÄ¿ºÍ·´ÉäÔ´ÊýĿռ±ÈÔöÌí£¬ÐÂÐÍ·´Éä¹¥»÷²ã³ö²»Ç·´Éä¹¥»÷·À»¤ÐèҪʵʱ¸üÐÂ
·´ÉäÀàÐ͵Ĺ¥»÷´ÎÊýÕ¼ËùÓй¥»÷µÄ34%¡£Ïà±ÈÈ¥ÄêÔöÌíÏÔ×Å¡£´Ó¹¥»÷Ô´ÀàÐÍÀ´¿´£¬·´ÉäÔ´Õ¼±ÈÔöÌí£¬2020ÄêÖз´ÉäÔ´ÊýĿռËùÓй¥»÷Ô´µÄ14%¡£

¿´·¨Î壺ÐÂÐ͹¥»÷ÒªÁìÒ»Ö±·¢Ã÷£¬DDoS·ÀÓùÊÖÒÕÐèҪʵʱ¸üÐÂ
·DNSÐÒéÇå¾²Îó²î“NXNSAttack”¿Éµ¼Ö´óÐÍDDoS¹¥»÷
2020Äê5Ô£¬ÒÔÉ«ÁÐÑо¿Ö°Ô±±¨¸æÁËÒ»¸öеÄDNS·þÎñÆ÷Îó²î£¬±»³ÆÎª"NXNSAttack"¡£¹¥»÷Õß¿ÉÒÔʹÓÃÕâ¸öÎó²î£¬Í¬Ê±°²ÅŶñÒâµÄDNS·þÎñÆ÷£¬¿ÉÒÔ¶ÔÄ¿µÄDNS·þÎñÆ÷Ìᳫ¹¥»÷£¬×î´óÄܵ¼ÖÂÁ÷Á¿ÔöÌí1620±¶¡£
·RangeAmp¹¥»÷
2020Äê5Ô£¬ÖйúÑо¿Ö°Ô±Ðû²¼ÁËÁíÍâÒ»ÖÖÐÂÐ͵ÄDDoS¹¥»÷·Å¸ÅÂÔÁì(RangeAmp)£¬Ê¹ÓÃHTTPÍ·²¿µÄRange×Ö¶ÎÌᳫ¶ñÒâÇëÇ󣬿ÉʹCDN£¨ÄÚÈÝ·Ö·¢ÍøÂ磩ºÍCDN£¬»òÕßCDNºÍÄ¿µÄ·þÎñÆ÷µÄÁ÷Á¿×î¸ß·Å´ó¼¸Ç§ÉõÖÁÉÏÍò±¶¡£
·ÐÂÐÍHTTP2 DDoS¹¥»÷Ô¤¾¯£¬CC2.0ʱ´ú¼´½«µ½À´
Ëæ×ÅHTTP2.0µÄÖð²½Ó¦Óã¬ÐÂÐÒé´øÀ´ÁËеÄHTTP¹¥»÷Íþв¡£Ëæ×ÅHTTP2ÐÒéÎó²îÁ¬Ðø²»¶Ï±¬³ö£¬Ô½À´Ô½¶àÑо¿Ö¸³ö£¬²î±ðÓÚÒÑÍùµÄCC¹¥»÷£¬»ùÓÚHTTP2µÄÐÂÐÍCC¹¥»÷¡¢ÂýËÙ¹¥»÷Óиü´óµÄΣº¦£¬¶ÔÓªÒµ·þÎñÆ÷ÐÔÄÜÏûºÄÓиüÏÔ×Å×÷Óá£
ÕâЩÐÂÐ͵Ĺ¥»÷ÒªÁ죬ÐèÒªDDoSÊÖÒÕÏà¹ØµÄÑз¢Ö°Ô±ºÍÔËάְԱ£¬Ò»Ö±¸üÐÂÒÑÓÐÊÖÒÕºÍÕ½ÂÔ£¬À´Ó¦¶ÔÕâЩÐÂÐ͹¥»÷¡£
¿´·¨Áù£º¹¥»÷ƽ¾ùʱ³¤Ëõ¶Ì£¬¹¥»÷±¾Ç®Ò»Ö±Ï½µ
DDoS¹¥»÷µÄƽ¾ùʱ³¤Îª42·ÖÖÓ£¬Ïà±ÈÈ¥ÄêϽµÁË21%¡£¹¥»÷ʱ³¤ÔÚ30·ÖÖÓÒÔÄÚµÄDDoS¹¥»÷Õ¼ÁËËùÓй¥»÷µÄ79.9%£¬Óë2019ÄêµÄ75%Ïà±ÈÌáÉýÁË6%¡£

¿´·¨Æß£ºº£ÄÚÒ½ÁÆ¡¢½ÌÓý¡¢Õþ¸®ÐÐÒµÒßÇéʱ´úÔâÊÜDDoS¹¥»÷´ÎÊýÔöÌíÏÔÖø
Ò½ÁÆÐÐÒµÔÚÒßÇéʱ´úÔâÊܵÄDDoS¹¥»÷ÓÐÔöÎÞ¼õ¡£ÈýÔºÍËÄÔÂΪ¹¥»÷×îá¯Á룬֮ºóÖðÔµݼõ¡£7ÔÂÖ®ºóµÄDDoSÇ÷ÊÆºÍÈ¥Äê»ù±¾¼á³ÖÒ»Ö£¬ÇÒÉÔÉÔïÔÌ¡£³ýÁËÒ½ÁÆÐÐÒµ£¬Õþ¸®ºÍ½ÌÓýÐÐÒµµÄDDoSÌ¬ÊÆÒ²ÓÐÏàͬÇ÷ÊÆ¡£ÉÔÓвî±ðµÄÊÇ£¬ÔÚϰëÄ꣬DDoSϽµµÄÇ÷ÊÆÔ½·¢ÏÔ×Å¡£
¿´·¨°Ë£º¼òµ¥ÍÅ»ïµÄ¹¥»÷×ÜÁ÷Á¿×î¸ßµÖ´ï3624TB£¬Õâ¸ö×î´ó¹¥»÷×ÜÁ÷Á¿ÊÇÈ¥ÄêµÄÁ½±¶ÒÔÉÏ
2020Äê¹²·¢Ã÷45¸ö»îÔ¾ÍŻ´ó²¿·ÖÍÅ»ï¹æÄ£¶¼ÔÚ200µ½1ÍòÖ®¼ä£¬¹æÄ£×î´óµÄÍÅ»ï³ÉÔ±¸ß´ï4.9Íò¸ö¡£¼òµ¥ÍÅ»ïµÄ¹¥»÷×ÜÁ÷Á¿×î¸ßµÖ´ï3624TB£¬Õâ¸ö×î´ó¹¥»÷×ÜÁ÷Á¿ÊÇÈ¥ÄêµÄÁ½±¶ÒÔÉÏ¡£ÍŻ﹥»÷×ÊÔ´Ö÷ҪΪIDCºÍÎïÁªÍø×°±¸¡£
¿´·¨¾Å£ºÎÒÃǼì²âµ½µÄMiraiºÍGafgytÈÔÈ»Êǵ±½ñÌìϹæÄ£ÄÚÓ°Ïì×î´óµÄÁ½¸öLinux/IoT DDoS¼Ò×å
2020Ä꣬·üӰʵÑéÊÒ×·×Ùµ½ÕâÁ½¸ö¼Ò×åµÄC&CµØµã¾ÍÁè¼ÝÁË1500¸ö£¬»îÔ¾C&CÕ¼µ½94%£¬Æ½¾ùÖðÈվͻáа²ÅÅÔ¼4~5¸öC&C¡£ÕâЩC&C¹¥»÷ÁËÁè¼Ý22Íò¸öIPºÍÓòÃû£¬Æ½¾ùÿÔÂ700¶à¸öÄ¿µÄ¡£

Mirai+Gafgyt¹¥»÷Ä¿µÄµÄÔ¶ÈÊýÄ¿

AG¹«Ë¾ÔÆ







