中文
相关论文

相关论文: The Far Side of DNS Amplification: Tracing the DDo…

200 篇论文

DDoS attacks remain a major security threat to the continuous operation of Internet edge infrastructures, web services, and cloud platforms. While a large body of research focuses on DDoS detection and protection, to date we ultimately…

密码学与安全 · 计算机科学 2021-03-09 Daniel Kopp , Christoph Dietzel , Oliver Hohlfeld

This work proposes a novel approach to infer and characterize Internet-scale DNS amplification DDoS attacks by leveraging the darknet space. Complementary to the pioneer work on inferring Distributed Denial of Service (DDoS) activities…

密码学与安全 · 计算机科学 2014-05-23 Claude Fachkha , Elias Bou-Harb , Mourad Debbabi

The Domain Name System (DNS) is a critical service that enables domain names to be converted to IP addresses (or vice versa); consequently, it is generally permitted through enterprise security systems (e.g., firewalls) with little…

网络与互联网体系结构 · 计算机科学 2024-10-28 Minzhao Lyu , Hassan Habibi Gharakheili , Craig Russell , Vijay Sivaraman

In this paper, we revisit the use of honeypots for detecting reflective amplification attacks. These measurement tools require careful design of both data collection and data analysis including cautious threshold inference. We survey common…

密码学与安全 · 计算机科学 2024-05-07 Marcin Nawrocki , John Kristoff , Raphael Hiesgen , Chris Kanich , Thomas C. Schmidt , Matthias Wählisch

Distributed reflective denial of service (DRDoS) attacks are a popular choice among adversaries. In fact, one of the largest DDoS attacks ever recorded, reaching a peak of 1.3Tbps against GitHub, was a memcached-based DRDoS attack. More…

网络与互联网体系结构 · 计算机科学 2024-09-02 Karthika Subramani , Roberto Perdisci , Maria Konte

Distributed Denial-of-Service (DDoS) attacks represent a cost-effective and potent threat to network stability. While extensively studied in IPv4 networks, DDoS implications in IPv6 remain underexplored. The vast IPv6 address space renders…

网络与互联网体系结构 · 计算机科学 2025-06-06 Ling Hu , Tao Yang , Yu Pang , Bingnan Hou , Zhiping Cai , Bo Yu

Amplification DDoS attacks inherently rely on IP spoofing to steer attack traffic to the victim. At the same time, IP spoofing undermines prosecution, as the originating attack infrastructure remains hidden. Researchers have therefore…

密码学与安全 · 计算机科学 2021-03-16 Johannes Krupp , Christian Rossow

The Internet Threat Monitoring (ITM) is an efficient monitoring system used globally to measure, detect, characterize and track threats such as denial of service (DoS) and distributed Denial of Service (DDoS) attacks and worms. . To block…

网络与互联网体系结构 · 计算机科学 2012-02-22 K. Munivara Prasad , A. Rama Mohan Reddy , V Jyothsna

Existing distributed denial of service attack (DDoS) solutions cannot handle highly aggregated data rates; thus, they are unsuitable for Internet service provider (ISP) core networks. This article proposes a digital twin-enabled intelligent…

密码学与安全 · 计算机科学 2023-10-27 Yagmur Yigit , Bahadir Bal , Aytac Karameseoglu , Trung Q. Duong , Berk Canberk

The severity of amplification attacks has grown in recent years. Since 2013 there have been at least two attacks which involved over 300Gbps of attack traffic. This paper offers an analysis of these and many other amplification attacks. We…

网络与互联网体系结构 · 计算机科学 2016-08-08 Fabrice J. Ryba , Matthew Orlinski , Matthias Wählisch , Christian Rossow , Thomas C. Schmidt

Enterprise Networks are growing in scale and complexity, with heterogeneous connected assets needing to be secured in different ways. Nevertheless, virtually all connected assets use the Domain Name System (DNS) for address resolution, and…

密码学与安全 · 计算机科学 2022-05-19 Jawad Ahmed

This paper details data science research in the area of Cyber Threat Intelligence applied to a specific type of Distributed Denial of Service (DDoS) attack. We study a DDoS technique prevalent in the Domain Name System (DNS) for which…

密码学与安全 · 计算机科学 2019-07-23 Renée Burton

Distributed Denial-of-Service (DDoS) attacks exhaust resources, leaving a server unavailable to legitimate clients. The Domain Name System (DNS) is a frequent target of DDoS attacks. Since DNS is a critical infrastructure service,…

密码学与安全 · 计算机科学 2022-09-16 A S M Rizvi , Jelena Mirkovic , John Heidemann , Wesley Hardaker , Robert Story

Distributed Denial of Service (DDoS) attacks pose a significant threat to the stability and reliability of online systems. Effective and early detection of such attacks is pivotal for safeguarding the integrity of networks. In this work, we…

密码学与安全 · 计算机科学 2024-01-09 Ali Alfatemi , Mohamed Rahouti , Ruhul Amin , Sarah ALJamal , Kaiqi Xiong , Yufeng Xin

Motivated by the impressive but diffuse scope of DDoS research and reporting, we undertake a multistakeholder (joint industry-academic) analysis to seek convergence across the best available macroscopic views of the relative trends in two…

Distributed Reflective Denial of Service (DRDoS) attacks are an immanent threat to Internet services. The potential scale of such attacks became apparent in March 2018 when a memcached-based attack peaked at 1.7 Tbps. Novel services built…

密码学与安全 · 计算机科学 2018-08-06 Thomas Lukaseder , Kevin Stölzle , Stephan Kleber , Benjamin Erb , Frank Kargl

The Domain Name System (DNS) is one of the most crucial parts of the Internet. Although the original standard defined the usage of DNS over UDP (DoUDP) as well as DNS over TCP (DoTCP), UDP has become the predominant protocol used in the…

网络与互联网体系结构 · 计算机科学 2022-07-19 Mike Kosek , Trinh Viet Doan , Simon Huber , Vaibhav Bajpai

The increase of cyber attacks in both the numbers and varieties in recent years demands to build a more sophisticated network intrusion detection system (NIDS). These NIDS perform better when they can monitor all the traffic traversing…

密码学与安全 · 计算机科学 2020-08-11 Mohammad J. Hashemi , Eric Keller

Distributed Denial-of-Service (DDoS) attacks represent a persistent threat to modern telecommunications networks: detecting and counteracting them is still a crucial unresolved challenge for network operators. DDoS attack detection is…

网络与互联网体系结构 · 计算机科学 2021-11-05 Damu Ding , Marco Savi , Domenico Siracusa

We present a comprehensive study on applying machine learning to detect distributed Denial of service (DDoS) attacks using large-scale Internet of Things (IoT) systems. While prior works and existing DDoS attacks have largely focused on…

密码学与安全 · 计算机科学 2023-02-17 Arvin Hekmati , Nishant Jethwa , Eugenio Grippo , Bhaskar Krishnamachari
‹ 上一页 1 2 3 10 下一页 ›