...
首页> 外文期刊>Computer networks >On the detection of signaling DoS attacks on 3G/WiMax wireless networks
【24h】

On the detection of signaling DoS attacks on 3G/WiMax wireless networks

机译:关于检测3G / WiMax无线网络上的信号DoS攻击的方法

获取原文
获取原文并翻译 | 示例

摘要

Third generation (3G) wireless networks based on the CDMA2000 and UMTS standards are now increasingly being deployed throughout the world. Because of their complex signaling and relatively limited bandwidth, these 3G networks are generally more vulnerable than their wireline counterparts, thus making them fertile ground for new attacks. In this paper, we identify and study a novel denial of service (DoS) attack, called signaling attack, that exploits the unique vulnerabilities of the signaling/control plane in 3G wireless networks. Using simulations driven by real traces, we are able to demonstrate the impact of a signaling attack. Specifically, we show how a well-timed low-volume signaling attack can potentially overload the control plane and detrimentally affect the key elements in a 3G wireless infrastructure. The low-volume nature of the signaling attack allows it to avoid detection by existing intrusion detection algorithms, which are often signature or volume-based. As a counter-measure, we present and evaluate an online early detection algorithm based on the statistical CUSUM method. Through the use of extensive trace-driven simulations, we demonstrate that the algorithm is robust and can identify an attack in its inception, before significant damage is done. Apart from 3G networks, we also show that many emerging wide-area networks such as 802.16/WiMax share the same vulnerability and our solution can also apply.
机译:现在,基于CDMA2000和UMTS标准的第三代(3G)无线网络正在越来越多地被部署。由于其复杂的信令和相对有限的带宽,这些3G网络通常比有线网络更脆弱,从而使其成为新攻击的沃土。在本文中,我们确定并研究了一种称为信号攻击的新型拒绝服务(DoS)攻击,该攻击利用了3G无线网络中信号/控制平面的独特漏洞。使用真实轨迹驱动的模拟,我们能够证明信号攻击的影响。具体来说,我们展示了适时的小容量信令攻击如何可能使控制平面过载并有害地影响3G无线基础架构中的关键元素。信号攻击的低容量性质使其可以避免使用现有的入侵检测算法进行检测,这些算法通常是基于签名或基于数量的。作为对策,我们提出并评估基于统计CUSUM方法的在线早期检测算法。通过使用大量跟踪驱动的仿真,我们证明了该算法是可靠的,并且可以在造成重大损害之前识别出攻击的开始。除3G网络外,我们还表明许多新兴的广域网(例如802.16 / WiMax)具有相同的漏洞,我们的解决方案也可以适用。

著录项

  • 来源
    《Computer networks》 |2009年第15期|2601-2616|共16页
  • 作者单位

    Department of Computer Science and Engineering, The Chinese University of Hong Kong, Hong Kong;

    Bell Labs, Alcatel-Lucent, 600-700 Mountain Avenue. Murray Hill, NJ 07974, USA;

    Bell Labs, Alcatel-Lucent, 600-700 Mountain Avenue. Murray Hill, NJ 07974, USA;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    3G wireless; security; DoS attacks;

    机译:3G无线;安全;DoS攻击;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号