LoRDAS: A Low-Rate DoS Attack against Application Servers

作者: Gabriel Maciá-Fernández , Jesús E. Díaz-Verdejo , Pedro García-Teodoro , Francisco de Toro-Negro

DOI: 10.1007/978-3-540-89173-4_17

关键词:

摘要: In a communication network, there always exist some specific servers that should be considered critical infrastructure to protected, specially due the nature of services they provide. this paper, low-rate denial service attack against application is presented. The gets advantage known timing mechanisms in server behaviour wisely strike ON/OFF waveforms cause service, while traffic rate sent controlled, thus allowing bypass defense rely on detection high traffics. First, we determine conditions present potential victim attack. As an example, persistent HTTP case presented, being procedure for striking it described. Moreover, efficiency achieved by evaluated both simulated and real environments, its studied according variations configuration parameters. aim work denounce feasibility such attacks order motivate development mechanisms.

参考文章(15)
Peter Reiher, Sven Dietrich, Jelena Mirkovic, David Dittrich, Internet Denial of Service: Attack and Defense Mechanisms (Radia Perlman Computer Networking and Security) Prentice Hall PTR. ,(2004)
Qijun Gu, Peng Liu, Denial of Service Attacks Handbook of Computer Networks. pp. 454- 468 ,(2012) , 10.1002/9781118256107.CH29
Thomer M. Gil, Massimiliano Poletto, MULTOPS: a data-structure for bandwidth attack detection usenix security symposium. pp. 3- 3 ,(2001) , 10.21236/ADA401819
Linda Pesante, CERT® Coordination Center Encyclopedia of Software Engineering. ,(2002) , 10.1002/0471028959.SOF035
M.J. Zaki, Wei Li, S. Parthasarathy, Customized dynamic load balancing for a network of workstations high performance distributed computing. pp. 282- 291 ,(1996) , 10.1109/HPDC.1996.546198
Vasilios A. Siris, Fotini Papagalou, Application of anomaly detection algorithms for detecting SYN flooding attacks Computer Communications. ,vol. 29, pp. 1433- 1442 ,(2006) , 10.1016/J.COMCOM.2005.09.008
Zhen Liu, Nicolas Niclausse, César Jalpa-Villanueva, Traffic model and performance evaluation of Web servers Performance Evaluation. ,vol. 46, pp. 77- 100 ,(2001) , 10.1016/S0166-5316(01)00046-3
Jelena Mirkovic, Peter Reiher, A taxonomy of DDoS attack and DDoS defense mechanisms acm special interest group on data communication. ,vol. 34, pp. 39- 53 ,(2004) , 10.1145/997150.997156
Aleksandar Kuzmanovic, Edward W. Knightly, Low-rate TCP-targeted denial of service attacks Proceedings of the 2003 conference on Applications, technologies, architectures, and protocols for computer communications - SIGCOMM '03. pp. 75- 86 ,(2003) , 10.1145/863955.863966