首页> 外文会议>Software Security and Reliability (SERE), 2012 IEEE Sixth International Conference on >Detection and Mitigation of Induced Low Rate TCP-Targeted Denial of Service Attack
【24h】

Detection and Mitigation of Induced Low Rate TCP-Targeted Denial of Service Attack

机译:检测和缓解导致的针对TCP的低速率拒绝服务攻击

获取原文
获取原文并翻译 | 示例

摘要

Low rate TCP-targeted denial of service attack is a cleverly crafted attack in which an attacker exploits congestion avoidance algorithm and uniformity of min RTO in Transmission Control Protocol(TCP). Attacker congest the network for a brief period of time then keep quiet for some time. This phenomenon is repeated after min RTO time. This attack causes degradation of service and denial of service to those TCP flows which satisfies certain condition. Attacker Launches this attack by exploiting the technique of optimistic  acknowledgement which is used for sending of acknowledgement before data has been received. By this technique attacker induces server to perform the attack. Ever since the discovery of this attack, lot of solution, detection scheme have been proposed, each having their own merits and demerits. Mostly these schemes are complex and not scalable. In this paper a novel scheme has been proposed which reduces random bytes from a random TCP segment to verify the authenticity of those optimistic acknowledgement. As attacker does not know segment size whenever he sends optimistic acknowledgement it is dropped. Thus the attack can be mitigated using this technique
机译:针对TCP的低速率拒绝服务攻击是一种精心设计的攻击,攻击者利用拥塞避免算法和传输控制协议(TCP)中最小RTO的一致性进行攻击。攻击者会短暂阻塞网络,然后保持安静一段时间。在最短的RTO时间后,这种现象会重复出现。这种攻击导致满足某些条件的那些TCP流的服务质量下降和服务拒绝。攻击者通过利用乐观确认技术来发起此攻击,该技术用于在收到数据之前发送确认。通过这种技术,攻击者诱使服务器执行攻击。自从发现这种攻击以来,已经提出了许多解决方案和检测方案,每种方案各有优缺点。大多数情况下,这些方案很复杂且不可扩展。在本文中,已经提出了一种新颖的方案,该方案减少了来自随机TCP段的随机字节,以验证那些乐观确认的真实性。由于攻击者在发送乐观确认时不知道分段大小,因此将其丢弃。因此,可以使用此技术缓解攻击

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号