Is low-rate distributed denial of service a great threat to the Internet?

被引:4
|
作者
Chen, Ming [1 ]
Chen, Jing [1 ]
Wei, Xianglin [2 ]
Chen, Bing [1 ]
机构
[1] Nanjing Univ Aeronaut & Astronaut, Coll Comp Sci & Technol, Nanjing, Peoples R China
[2] Natl Univ Def Technol, Res Inst 63, Nanjing 210007, Peoples R China
关键词
DDOS ATTACK; DEFENSE;
D O I
10.1049/ise2.12031
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Low-rate Distributed Denial of Service (LDDoS) attacks, in which the attackers send packets to a victim at a sufficiently low rate to avoid being detected, are considered to be a subtype of DDoS attacks and a potential threat to Internet security. However, an overwhelming attack paradigm on the Internet has rarely been reported due to the harsh requirements for launching LDDoS attacks; therefore, most existing LDDoS attacks are constructed and evaluated through theoretical deduction and/or simulation tests. In this backdrop, the authors aim to figure out what the conditions for launching a successful LDDoS attack are, and how harmful an attack could be. They first analyse the characteristics of LDDoS attacks, and derive the conditions and parameters for initiating LDDoS attacks using a queuing model. Based on the analysis results, an LDDoS algorithm is presented. Then, an LDDoS validation prototype is built on a Network Function Virtualization network to validate the derived parameters and conditions. Finally, a series of experiments are conducted on the testbed, and the results show that a successful LDDoS attack could be achieved based on the derived algorithm; however, its attack effect only lasts for a short time compared with its DDoS counterparts.
引用
收藏
页码:351 / 363
页数:13
相关论文
共 50 条
  • [1] On a novel pattern of distributed low-rate denial of service attacks
    Liu, Xiao-Ming
    Cheng, Gong
    Zhang, Miao
    Luo, Shou-Shan
    Journal of China Universities of Posts and Telecommunications, 2011, 18 (SUPPL.2): : 113 - 118
  • [2] Evaluation of Distributed Denial of Service Threat in the Internet of Things
    Pacheco, Luis Alberto B.
    Gondim, Joao J. C.
    Solis Barreto, Priscila A.
    Alchieri, Eduardo
    15TH IEEE INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (IEEE NCA 2016), 2016, : 89 - 92
  • [3] The model for low-rate denial-of-service attack on RED
    Wu, Libing
    Xu, Ao
    He, Yanxiang
    Wang, Chao
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2010, 38 (09): : 50 - 54
  • [4] Survey on research and progress of low-rate denial of service attacks
    Yang, J.-H. (yang@cernet.edu.cn), 1600, Chinese Academy of Sciences (25):
  • [5] Detection and Mitigation of Low-Rate Denial-of-Service Attacks: A Survey
    Rios, Vinicius De Miranda
    Inacio, Pedro R. M.
    Magoni, Damien
    Freire, Mario M.
    IEEE ACCESS, 2022, 10 : 76648 - 76668
  • [6] On the effect of router buffer sizes on low-rate denial of service attacks
    Sarat, S
    Terzis, A
    ICCCN 2005: 14th International Conference on Computer Communications and Networks, Proceedings, 2005, : 281 - 286
  • [7] Flow-oriented detection of low-rate denial of service attacks
    Wu, Zhijun
    Hu, Ran
    Yue, Meng
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2016, 29 (01) : 130 - 141
  • [8] Applying Sigmoid Filter for Detecting the Low-Rate Denial of Service Attacks
    Rabie, Rashed
    Drissi, Maroua
    2018 IEEE 8TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2018, : 450 - 456
  • [9] On the Detection of Low-Rate Denial of Service Attacks at Transport and Application Layers
    Vedula, Vasudha
    Lama, Palden
    Boppana, Rajendra, V
    Trejo, Luis A.
    ELECTRONICS, 2021, 10 (17)
  • [10] On a Game Theoretic Approach to Detect the Low-Rate Denial of Service Attacks
    Cotae, Paul
    Rabie, Rashed
    2018 12TH INTERNATIONAL CONFERENCE ON COMMUNICATIONS (COMM), 2018, : 19 - 26