WEBTRAP: A Dynamic Defense Scheme Against Economic Denial of Sustainability Attacks

被引:0
|
作者
Wang, Huangxin [1 ]
Xi, Zhonghua [1 ]
Li, Fei [1 ]
Chen, Songqing [1 ]
机构
[1] George Mason Univ, Fairfax, VA 22030 USA
来源
2017 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS) | 2017年
关键词
DDOS DEFENSE;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Economic Denial of Sustainability (EDoS) attacks have been threatening cloud consumers' financial viability due to the "pay-as-you-go" cloud resource charging scheme. EDoS attackers can take advantage of this pricing scheme to fraudulently consume the billable cloud resources from the cloud consumers and thus, drive up the cloud consumers' financial cost and eventually disrupt their economic sustainability. In this paper, we propose WEBTRAP, a defense scheme against EDoS attacks for web-based systems. WEBTRAP consists of two major components. On one side, it dynamically changes/updates web resource addresses so that the web-based system is equipped with a moving target defense capability to make attackers unable to exploit web resources. On the other side, WEBTRAP injects carefully-designed traps in a real-time manner to detect attackers. The trap injection process is guided by an online control-based algorithm to balance the damage introduced by the attackers and the potential side-impacts on benign clients and minimize the overall cost. We conduct experiments to validate WEBTRAP's effectiveness under various types of websites. The evaluation results demonstrate that WEBTRAP is effective, by more than 80%, in reducing the cost suffered by the cloud consumers.
引用
收藏
页码:55 / 63
页数:9
相关论文
共 50 条
  • [1] EDoS-ADS: An Enhanced Mitigation Technique Against Economic Denial of Sustainability (EDoS) Attacks
    Shawahna, Ahmad
    Abu-Amara, Marwan
    Mahmoud, Ashraf
    Osais, Yahya Esmail
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2020, 8 (03) : 790 - 804
  • [2] Characterization of defense mechanisms against distributed denial of service attacks
    Chen, LC
    Longstaff, TA
    Carley, KM
    COMPUTERS & SECURITY, 2004, 23 (08) : 665 - 678
  • [3] A Cooperative Mechanism to Defense Against Distributed Denial of Service Attacks
    Beitollahi, Hakem
    Deconinck, Geert
    TRUSTCOM 2011: 2011 INTERNATIONAL JOINT CONFERENCE OF IEEE TRUSTCOM-11/IEEE ICESS-11/FCST-11, 2011, : 11 - 20
  • [4] Distributed defense against distributed denial-of-service attacks
    Shi, W
    Xiang, Y
    Zhou, WL
    DISTRIBUTED AND PARALLEL COMPUTING, 2005, 3719 : 357 - 362
  • [5] Defense mechanisms against Distributed Denial of Service attacks : A survey
    Manavi, Mousa Taghizadeh
    COMPUTERS & ELECTRICAL ENGINEERING, 2018, 72 : 26 - 38
  • [6] Controlled Virtual Resource Access to Mitigate Economic Denial of Sustainability (EDoS) Attacks Against Cloud Infrastructures
    Baig, Zubair A.
    Binbeshr, Farid
    2013 INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND BIG DATA (CLOUDCOM-ASIA), 2013, : 346 - 353
  • [7] A game inspired defense mechanism against distributed denial of service attacks
    Bedi, Harkeerat
    Shiva, Sajjan
    Roy, Sankardas
    SECURITY AND COMMUNICATION NETWORKS, 2014, 7 (12) : 2389 - 2404
  • [8] A Hybrid Defense Technique for ISP Against the Distributed Denial of Service Attacks
    Moon, Young Hoon
    Choi, Suk Bong
    Kim, Huy Kang
    Yoo, Changsok
    APPLIED MATHEMATICS & INFORMATION SCIENCES, 2014, 8 (05): : 2347 - 2359
  • [9] An ADS-PAYG Approach Using Trust Factor Against Economic Denial of Sustainability Attacks in Cloud Storage
    A. Karthika
    N. Muthukumaran
    Wireless Personal Communications, 2022, 122 : 69 - 85
  • [10] An ADS-PAYG Approach Using Trust Factor Against Economic Denial of Sustainability Attacks in Cloud Storage
    Karthika, A.
    Muthukumaran, N.
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 122 (01) : 69 - 85