English
Related papers

Related papers: The Closed Resolver Project: Measuring the Deploym…

200 papers

This paper concerns the problem of the absence of ingress filtering at the network edge, one of the main causes of important network security issues. Numerous network operators do not deploy the best current practice - Source Address…

Networking and Internet Architecture · Computer Science 2020-03-31 Maciej Korczyński , Yevheniya Nosyk , Qasim Lone , Marcin Skwarek , Baptiste Jonglez , Andrzej Duda

Source address validation (SAV) is a standard formalized in RFC 2827 aimed at discarding packets with spoofed source IP addresses. The absence of SAV has been known as a root cause of reflection distributed denial-of-service (DDoS) attacks.…

Networking and Internet Architecture · Computer Science 2023-01-25 Maciej Korczyński , Yevheniya Nosyk

DNS Security Extensions (DNSSEC) provide the most effective way to fight DNS cache poisoning attacks. Yet, very few DNS resolvers perform DNSSEC validation. Identifying such systems is non-trivial and the existing methods are not suitable…

Cryptography and Security · Computer Science 2024-06-06 Yevheniya Nosyk , Maciej Korczyński , Andrzej Duda

Distributed Denial-of-Service (DDoS) attacks represent a cost-effective and potent threat to network stability. While extensively studied in IPv4 networks, DDoS implications in IPv6 remain underexplored. The vast IPv6 address space renders…

Networking and Internet Architecture · Computer Science 2025-06-06 Ling Hu , Tao Yang , Yu Pang , Bingnan Hou , Zhiping Cai , Bo Yu

Spoofed traffic has been identified as one of the main issues of concern for network hygiene nowadays, as it facilitates Distributed Denial-of-Service (DDoS) attacks by hiding their origin and complicating forensic investigations. Some…

Networking and Internet Architecture · Computer Science 2025-01-29 Radu Anghel , Qasim Lone , Matthew Luckie , Carlos Gañán , Yury Zhauniarovich

To protect themselves from attacks, networks need to enforce ingress filtering, i.e., block inbound packets sent from spoofed IP addresses. Although this is a widely known best practice, it is still not clear how many networks do not block…

Cryptography and Security · Computer Science 2024-04-17 Tianxiang Dai , Haya Shulman

IP spoofing enables reflection and amplification attacks, which cause major threats to the current Internet infrastructure. Detecting IP packets with incorrect source addresses would help to improve the situation. This is easy at the…

Networking and Internet Architecture · Computer Science 2021-10-05 Jasper Eumann , Raphael Hiesgen , Thomas C. Schmidt , Matthias Wählisch

Distributed Denial of Service (DDoS) is one of the most prevalent attacks that an organizational network infrastructure comes across nowadays. We propose a deep learning based multi-vector DDoS detection system in a software-defined network…

Networking and Internet Architecture · Computer Science 2018-01-03 Quamar Niyaz , Weiqing Sun , Ahmad Y Javaid

The concept of Software Defined Networking (SDN) represents a modern approach to networking that separates the control plane from the data plane through network abstraction, resulting in a flexible, programmable and dynamic architecture…

Machine Learning · Computer Science 2023-03-14 Ahmad Hamarshe , Huthaifa I. Ashqar , Mohammad Hamarsheh

Software-defined networking (SDN) is a promising technology to overcome many challenges in wireless sensor networks (WSN), particularly with respect to flexibility and reuse. Conversely, the centralization and the planes' separation turn…

Cryptography and Security · Computer Science 2020-03-27 Gustavo A. Nunez Segura , Sotiris Skaperas , Arsenia Chorti , Lefteris Mamatas , Cintia Borges Margi

Denial of service (DoS) attacks and more particularly the distributed ones (DDoS) are one of the latest threat and pose a grave danger to users, organizations and infrastructures of the Internet. Several schemes have been proposed on how to…

Cryptography and Security · Computer Science 2012-04-26 B. B. Gupta , R. C. Joshi , Manoj Misra

Denial of Service (DoS) is a security threat which compromises the confidentiality of information stored in Local Area Networks (LANs) due to unauthorized access by spoofed IP addresses. SYN Flooding is a type of DoS which is harmful to…

Cryptography and Security · Computer Science 2012-02-09 Mehdi Ebady Manna , Angela Amphawan

As IPv6 deployment accelerates, understanding the evolving security posture of network peripheries becomes increasingly important. A DSN 2021 study introduced the first large-scale discovery of IPv6 network peripheries, uncovering risks…

Networking and Internet Architecture · Computer Science 2026-04-23 Zixuan Xie , Zitao Yang , Shurui Fang , Zhaoyang Li , Wenxing Xie , Nannan Fu , Liangyu Dong , Xiang Li

Many systems today rely heavily on virtual private network (VPN) technology to connect networks and protect their services on the Internet. While prior studies compare the performance of different implementations, they do not consider…

Cryptography and Security · Computer Science 2022-06-15 Fabio Streun , Joel Wanner , Adrian Perrig

Distributed Denial-of-Service (DDoS) attacks represent a persistent threat to modern telecommunications networks: detecting and counteracting them is still a crucial unresolved challenge for network operators. DDoS attack detection is…

Networking and Internet Architecture · Computer Science 2021-11-05 Damu Ding , Marco Savi , Domenico Siracusa

The challenging number is used for the detection of Spoofing attack. The IP Spoofing is considered to be one of the potentially brutal attack which acts as a tool for the DDoS attack which is considered to be a major threat among security…

Cryptography and Security · Computer Science 2011-10-11 L. Kavisankar , C. Chellappan

Disruption from service caused by DDoS attacks is an immense threat to Internet today. These attacks can disrupt the availability of Internet services completely, by eating either computational or communication resources through sheer…

Cryptography and Security · Computer Science 2012-03-13 B. B. Gupta , Manoj Misra , R. C. Joshi

In light of ever-increasing scale and sophistication of modern DDoS attacks, it is time to revisit in-network filtering or the idea of empowering DDoS victims to install in-network traffic filters in the upstream transit networks. Recent…

Cryptography and Security · Computer Science 2019-01-16 Deli Gong , Muoi Tran , Shweta Shinde , Hao Jin , Vyas Sekar , Prateek Saxena , Min Suk Kang

Distributed denial-of-service (DDoS) attacks threaten the availability of Internet of Things (IoT) infrastructures, particularly under resource-constrained deployment conditions. Although transfer learning models have shown promising…

Cryptography and Security · Computer Science 2026-02-27 Nelly Elsayed

Recent years witnessed a surge in network traffic due to the emergence of new online services, causing periodic saturation and complexity problems. Additionally, the growing number of IoT devices further compounds the problem. Software…

Networking and Internet Architecture · Computer Science 2024-01-18 Jaime Tamayo , Lorena Isabel Barona López , Ángel Leonardo Valdivieso Caraguay
‹ Prev 1 2 3 10 Next ›