time security Log4j

Disable Time Sync NOW—Ugly GPSd Bug Brings Sunday FAILs

On Sunday, you might find some equipment thinks it’s 2002. Yet another case of critical open source code being maintained by a single unpaid volunteer ...
Security Boulevard

NTP: The Most Neglected Core Internet Protocol

The Internet of today is awash with networking protocols, but at its core lies  a handful that fundamentally keep the Internet functioning. From my perspective, there is no modern Internet without DNS, ...
Verifying NTP Reserved Mode Denial of Service Vulnerability

Verifying NTP Reserved Mode Denial of Service Vulnerability

| | CVE-2009-3563, DoS, NTP, Ruby
I recently needed to check a NTP Reserved Mode Denial of Service vulnerability CVE-2009-3563, but without causing the DoS condition on the production server.  Using Metasploit’s auxillary module auxiliary/dos/ntp/ntpd_reserved_dos was not an option ...