首页> 外文会议>Computing Technology and Information Management (ICCM), 2012 8th International Conference on >A novel pattern of distributed low-rate denial of service attack disrupts internet routing
【24h】

A novel pattern of distributed low-rate denial of service attack disrupts internet routing

机译:一种新型的分布式低速率拒绝服务攻击模式破坏了互联网路由

获取原文

摘要

Recently identified low-rate TCP-targeted DoS attacks can cause failures of Border Gateway Protocol sessions and route flappings without being detected by current defense mechanisms. Deliberately constructed Distributed low-rate DoS attacks can even generate surge of updates throughout the Internet. As this new breed of attacks needs a low-rate time gap between adjacent pulses, this time gap waste large number pulses to form other attack flows. In this paper, we investigate the possibility and methods of employing the time gap to evoke other attack flows against target network. Simulations show that this method can exponentially reduce the number of nodes and therefore lower the cost of the attack when attacking multiple BGP sessions simultaneously. Experiments show that the integrated attack is efficient in causing BGP session resets, delayed routing convergence and seriously impacting routing stability and network reachability. We also proposed the attack scheme and defense mechanisms of this kind of attacks.
机译:最近发现的针对TCP的低速率DoS攻击可能导致边界网关协议会话失败和路由震荡,而当前防御机制无法检测到该攻击。故意构造的分布式低速率DoS攻击甚至可以在整个Internet上产生大量的更新。由于这种新型的攻击需要相邻脉冲之间的低速率时间间隔,因此该时间间隔浪费了大量的脉冲以形成其他攻击流。在本文中,我们研究了利用时间间隔来引发针对目标网络的其他攻击流的可能性和方法。仿真表明,该方法可以成倍地减少节点数量,从而在同时攻击多个BGP会话时降低了攻击成本。实验表明,这种综合攻击可以有效地导致BGP会话重置,延迟路由收敛以及严重影响路由稳定性和网络可达性。我们还提出了这种攻击的攻击方案和防御机制。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号