On a novel pattern of distributed low-rate denial of service attacks
详细信息    查看全文
文摘
Recent research has exposed that low-rate transmission control protocol (TCP)-targeted denial-of-service (DoS) attacks can cause failures of border gateway protocol (BGP) sessions and route flapping without being detected by current defense mechanisms. Deliberately constructed distributed low-rate denial of service(DLDoS) attacks can even generate surge of updates throughout the Internet. As this breed of attacks need a low-rate time gap between pulses, this time gap waste large number opportunities to form other attack flows. In this paper, we investigate the possibility and methods of employing the time gap to evoke other attack flows against target network. Simulations show that this method can exponentially reduce the number of nodes and therefore lower the cost of the attack when attacking multiple BGP sessions simultaneously. We also proposed the attack scheme and defense mechanisms of this kind of attacks.

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700