MITIGATION OF CONTROL PLANE ATTACKS AT THE NETWORK LAYER

被引:0
|
作者
Fecko, Mariusz [1 ]
Manousakis, Kyriakos [1 ]
Young, Kenneth [1 ]
Kang, Jaewon [1 ]
Pachulski, Andrew [2 ]
Phoel, Wayne [3 ]
机构
[1] Appl Commun Sci, Basking Ridge, NJ USA
[2] Univ Maryland, Dept Comp Sci, College Pk, MD 20742 USA
[3] DARPA Strateg Technol Off, Arlington, VA USA
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
We describe the design, implementation and testing of the Component-Based Reusable Adaptive Mitigation (COBRAM) system, which is designed to mitigate attacks against control plane protocols at the MAC and routing layers of mobile wireless networks. The main parts of the COBRAM system are: (1) a set of extensible mitigation techniques that modify or extend a node's protocol components to resist attacks; (2) an intelligent activation engine that invokes these mitigation techniques based on externally provided reliability metrics and its own network observations; and (3) a network performance feedback system to determine the effectiveness of a deployed mitigation technique. All three parts of the COBRAM system were implemented and tested in various scenarios to determine its effectiveness in thwarting various control plane attacks by both single and multiple compromised nodes. In the scenarios of up to 48 nodes, COBRAM has been shown to restore network throughput to 60-88% of the baseline with 44% of the nodes attacking, with outages limited to 5-20s.
引用
收藏
页码:444 / 449
页数:6
相关论文
共 50 条
  • [1] Analysis of Network Attacks at Data Link Layer and its Mitigation
    Shanker, Ravi
    Singh, Aman
    [J]. 2021 INTERNATIONAL CONFERENCE ON COMPUTING SCIENCES (ICCS 2021), 2021, : 274 - 279
  • [2] Detection and mitigation of few control plane attacks in software defined network environments using deep learning algorithm
    Kumar, M. Anand
    Onyema, Edeh Michael
    Sundaravadivazhagan, B.
    Gupta, Manish
    Shankar, Achyut
    Gude, Venkataramaiah
    Yamsani, Nagendar
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024,
  • [3] Control Plane and Data Plane Issues in Network Layer Multipathing
    Khalil, Mohsin
    Khan, Sohaib Ahmed
    [J]. 2020 INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY SYSTEMS AND INNOVATION (ICITSI), 2020, : 263 - 269
  • [4] Mitigation of malicious attacks on network observation
    Xiao Yan-Dong
    Lao Song-Yang
    Hou Lv-lin
    Bai Liang
    [J]. INTERNATIONAL JOURNAL OF MODERN PHYSICS C, 2015, 26 (10):
  • [5] Detection and Mitigation of Wireless Link Layer Attacks
    Aung, May Aye Chan
    Thant, Khin Phyo
    [J]. 2017 IEEE/ACIS 15TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING RESEARCH, MANAGEMENT AND APPLICATIONS (SERA), 2017, : 173 - 178
  • [6] Denial of service attacks on network-based control systems: Impact and mitigation
    Long, Men
    Wu, Chwan-Hwa
    Hung, John Y.
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2005, 1 (02) : 85 - 96
  • [7] Accelerated DDoS Attacks Mitigation using Programmable Data Plane
    Kuka, Mario
    Vojanec, Kamil
    Kucera, Jan
    Benacek, Pavel
    [J]. 2019 ACM/IEEE SYMPOSIUM ON ARCHITECTURES FOR NETWORKING AND COMMUNICATIONS SYSTEMS (ANCS), 2019,
  • [8] Control Plane Reflection Attacks in SDNs: New Attacks and Countermeasures
    Zhang, Menghao
    Li, Guanyu
    Xu, Lei
    Bi, Jun
    Gu, Guofei
    Bai, Jiasong
    [J]. RESEARCH IN ATTACKS, INTRUSIONS, AND DEFENSES, RAID 2018, 2018, 11050 : 161 - 183
  • [9] On the Bilevel Optimization to Design Control Plane for SDONs in Consideration of Planned Physical-Layer Attacks
    Lv, Qian
    Zhou, Fen
    Zhu, Zuqing
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (03): : 3221 - 3230
  • [10] Detection and mitigation of classes of attacks in supervisory control systems
    Carvalho, Lilian Kawakami
    Wu, Yi-Chin
    Kwong, Raymond
    Lafortune, Stephane
    [J]. AUTOMATICA, 2018, 97 : 121 - 133