English
Related papers

Related papers: Rethinking IPv6 Defense: A Unified Edge-Centric Ze…

200 papers

Next generation Internet is highly concerned about the issue of reliability. Principally, the foundation of reliability is authentication of the source IP address. With the signature-and-verification based defense mechanisms available…

Networking and Internet Architecture · Computer Science 2011-03-22 Jie Li , Jian-ping Wu , Ke Xu

In this paper, we introduce Entropy/IP: a system that discovers Internet address structure based on analyses of a subset of IPv6 addresses known to be active, i.e., training data, gleaned by readily available passive and active means. The…

Networking and Internet Architecture · Computer Science 2016-11-22 Pawel Foremski , David Plonka , Arthur Berger

The SYN flood attack is a common attack strategy on the Internet, which tries to overload services with requests leading to a Denial-of-Service (DoS). Highly asymmetric costs for connection setup - putting the main burden on the attackee -…

Networking and Internet Architecture · Computer Science 2020-03-09 Dominik Scholz , Sebastian Gallenmüller , Henning Stubbe , Bassam Jaber , Minoo Rouhi , Georg Carle

The discovery of active IPv6 addresses represents a pivotal challenge in IPv6 network survey, as it is a prerequisite for downstream tasks such as network topology measurements and security analysis. With the rapid spread of IPv6 networks…

Networking and Internet Architecture · Computer Science 2024-01-17 Zhichao Zhang , Zhaoxin Zhang , Yanan Cheng , Ning Li

Named Data Networking (NDN) is a prominent realization of the vision of Information-Centric Networking. The NDN architecture adopts name-based routing and location-independent data retrieval. Among other important features, NDN integrates…

Networking and Internet Architecture · Computer Science 2022-06-14 Ahmed Benmoussa , Chaker Abdelaziz Kerrache , Nasreddine Lagraa , Spyridon Mastorakis , Abderrahmane Lakas , Abdou el Karim Tahari

The problem of attacks on new generation network infrastructures is becoming increasingly relevant, given the widening of the attack surface of these networks resulting from the greater number of devices that will access them in the future…

Networking and Internet Architecture · Computer Science 2025-05-15 Mattia G. Spina , Floriano De Rango , Edoardo Scalzo , Francesca Guerriero , Antonio Iera

The IPv4 address space is small enough to allow exhaustive active measurement, permitting important insight into Internet growth, policy, and evolution. The IPv6 address space, on the other hand, presents the problem that we can no longer…

Networking and Internet Architecture · Computer Science 2017-10-25 Stephen D. Strowes

Distributed Denial-of-Service (DDoS) attacks represent a persistent threat to modern telecommunications networks: detecting and counteracting them is still a crucial unresolved challenge for network operators. DDoS attack detection is…

Networking and Internet Architecture · Computer Science 2021-11-05 Damu Ding , Marco Savi , Domenico Siracusa

This paper explores three approaches for protecting cloud application data planes to prevent unauthorized access to the application and its data and to prevent unwanted data exfiltration. Through an exploration of various concrete security…

Cryptography and Security · Computer Science 2022-02-01 Grant Dasher , Ines Envid , Brad Calder

Software-Defined Network (SDN) radically changes the network architecture by decoupling the network logic from the underlying forwarding devices. This architectural change rejuvenates the network-layer granting centralized management and…

Cryptography and Security · Computer Science 2018-04-03 Arash Shaghaghi , Mohamed Ali Kaafar , Rajkumar Buyya , Sanjay Jha

The microservice bombshells that have been linked with the microservice expansion have altered the application architectures, offered agility and scalability in terms of complexity in security trade-offs. Feeble legacy-based perimeter-based…

Cryptography and Security · Computer Science 2025-11-10 Rethish Nair Rajendran , Sathish Krishna Anumula , Dileep Kumar Rai , Sachin Agrawal

MQTT is the dominant lightweight publish--subscribe protocol for IoT deployments, yet edge security remains inadequate. Cloud-based intrusion detection systems add latency that is unsuitable for real-time control, while CPU-bound firewalls…

Cryptography and Security · Computer Science 2026-01-13 Bui Ngoc Thanh Binh , Pham Hoai Luan , Le Vu Trung Duong , Vu Tuan Hai , Yasuhiko Nakashima

In most PUF-based authentication schemes, a central server is usually engaged to verify the response of the device's PUF to challenge bit-streams. However, the server availability may be intermittent in practice. To tackle such an issue,…

Cryptography and Security · Computer Science 2022-06-15 Mohammad Ebrahimabadi , Mohamed Younis , Wassila Lalouani , Naghmeh Karimi

This paper presents a Unified Security Architecture that fortifies the Agentic Web through a Zero-Trust IAM framework. This architecture is built on a foundation of rich, verifiable agent identities using Decentralized Identifiers (DIDs)…

Cryptography and Security · Computer Science 2025-08-22 Ken Huang , Yasir Mehmood , Hammad Atta , Jerry Huang , Muhammad Zeeshan Baig , Sree Bhargavi Balija

Information-centric networking (ICN) proposes to redesign the Internet by replacing its host centric design with an information centric one, by establishing communication at the naming level, with the receiver side acting as the driving…

Networking and Internet Architecture · Computer Science 2014-06-30 Aytac Azgin , Ravishankar Ravindran , Guoqiang Wang

In this work, we develop a distributed source routing algorithm for topology discovery suitable for ISP transport networks, that is however inspired by opportunistic algorithms used in ad hoc wireless networks. We propose a plug-and-play…

Networking and Internet Architecture · Computer Science 2011-05-02 Christophe Betoule , Thomas Bonald , Remi Clavier , Dario Rossi , Giuseppe Rossini , Gilles Thouenon

In recent years, there has been a growing concern with software integrity, that is, the assurance that software has not been tampered with on the path between developers and users. This path is represented by a software development pipeline…

Cryptography and Security · Computer Science 2022-11-14 B. M. Reichert , R. R. Obelheiro

Achieving high availability and robust security in Kubernetes requires more than reactive scaling and standard perimeter firewalls. Traditional autoscalers, such as HPA, often fail to react quickly to traffic spikes and cannot distinguish…

Cryptography and Security · Computer Science 2026-03-31 Zhijun Jiang , Amin Milani Fard

Many systems today rely heavily on virtual private network (VPN) technology to connect networks and protect their services on the Internet. While prior studies compare the performance of different implementations, they do not consider…

Cryptography and Security · Computer Science 2022-06-15 Fabio Streun , Joel Wanner , Adrian Perrig

Link-flooding attacks have the potential to disconnect even entire countries from the Internet. Moreover, newly proposed indirect link-flooding attacks, such as 'Crossfire', are extremely hard to expose and, subsequently, mitigate…

Networking and Internet Architecture · Computer Science 2016-11-09 Dimitrios Gkounis , Vasileios Kotronis , Christos Liaskos , Xenofontas Dimitropoulos