中文
相关论文

相关论文: Grey Rhino Warning: IPv6 is Becoming Fertile Groun…

200 篇论文

The severity of amplification attacks has grown in recent years. Since 2013 there have been at least two attacks which involved over 300Gbps of attack traffic. This paper offers an analysis of these and many other amplification attacks. We…

网络与互联网体系结构 · 计算机科学 2016-08-08 Fabrice J. Ryba , Matthew Orlinski , Matthias Wählisch , Christian Rossow , Thomas C. Schmidt

DDoS attacks remain a major security threat to the continuous operation of Internet edge infrastructures, web services, and cloud platforms. While a large body of research focuses on DDoS detection and protection, to date we ultimately…

密码学与安全 · 计算机科学 2021-03-09 Daniel Kopp , Christoph Dietzel , Oliver Hohlfeld

In this paper, we shed new light on the DNS amplification ecosystem, by studying complementary data sources, bolstered by orthogonal methodologies. First, we introduce a passive attack detection method for the Internet core, i.e., at…

密码学与安全 · 计算机科学 2021-10-07 Marcin Nawrocki , Mattijs Jonker , Thomas C. Schmidt , Matthias Wählisch

Distributed reflective denial of service (DRDoS) attacks are a popular choice among adversaries. In fact, one of the largest DDoS attacks ever recorded, reaching a peak of 1.3Tbps against GitHub, was a memcached-based DRDoS attack. More…

网络与互联网体系结构 · 计算机科学 2024-09-02 Karthika Subramani , Roberto Perdisci , Maria Konte

Source Address Validation (SAV) is a standard aimed at discarding packets with spoofed source IP addresses. The absence of SAV for outgoing traffic has been known as a root cause of Distributed Denial-of-Service (DDoS) attacks and received…

网络与互联网体系结构 · 计算机科学 2023-03-29 Yevheniya Nosyk , Maciej Korczyński , Qasim Lone , Marcin Skwarek , Baptiste Jonglez , Andrzej Duda

Distributed Reflective Denial of Service (DRDoS) attacks are an immanent threat to Internet services. The potential scale of such attacks became apparent in March 2018 when a memcached-based attack peaked at 1.7 Tbps. Novel services built…

密码学与安全 · 计算机科学 2018-08-06 Thomas Lukaseder , Kevin Stölzle , Stephan Kleber , Benjamin Erb , Frank Kargl

In this paper, we revisit the use of honeypots for detecting reflective amplification attacks. These measurement tools require careful design of both data collection and data analysis including cautious threshold inference. We survey common…

密码学与安全 · 计算机科学 2024-05-07 Marcin Nawrocki , John Kristoff , Raphael Hiesgen , Chris Kanich , Thomas C. Schmidt , Matthias Wählisch

As IPv6 deployment accelerates, understanding the evolving security posture of network peripheries becomes increasingly important. A DSN 2021 study introduced the first large-scale discovery of IPv6 network peripheries, uncovering risks…

网络与互联网体系结构 · 计算机科学 2026-04-23 Zixuan Xie , Zitao Yang , Shurui Fang , Zhaoyang Li , Wenxing Xie , Nannan Fu , Liangyu Dong , Xiang Li

This work proposes a novel approach to infer and characterize Internet-scale DNS amplification DDoS attacks by leveraging the darknet space. Complementary to the pioneer work on inferring Distributed Denial of Service (DDoS) activities…

密码学与安全 · 计算机科学 2014-05-23 Claude Fachkha , Elias Bou-Harb , Mourad Debbabi

The IPv4 address space is small enough to allow exhaustive active measurement, permitting important insight into Internet growth, policy, and evolution. The IPv6 address space, on the other hand, presents the problem that we can no longer…

网络与互联网体系结构 · 计算机科学 2017-10-25 Stephen D. Strowes

The DNS infrastructure is infamous for facilitating reflective amplification attacks. Various countermeasures such as server shielding, access control, rate limiting, and protocol restrictions have been implemented. Still, the threat…

密码学与安全 · 计算机科学 2025-10-23 Maynard Koch , Florian Dolzmann , Thomas C. Schmidt , Matthias Wählisch

Internet-wide studies provide extremely valuable insight into how operators manage their Internet of Things (IoT) deployments in reality and often reveal grievances, e.g., significant security issues. However, while IoT devices often use…

网络与互联网体系结构 · 计算机科学 2024-11-22 Markus Dahlmanns , Felix Heidenreich , Johannes Lohmöller , Jan Pennekamp , Klaus Wehrle , Martin Henze

Amplification DDoS attacks inherently rely on IP spoofing to steer attack traffic to the victim. At the same time, IP spoofing undermines prosecution, as the originating attack infrastructure remains hidden. Researchers have therefore…

密码学与安全 · 计算机科学 2021-03-16 Johannes Krupp , Christian Rossow

In this work we identify scanning strategies of IPv6 scanners on the Internet. We offer a unique perspective on the behavior of IPv6 scanners by conducting controlled experiments leveraging a large and unused /56 IPv6 subnet. We selectively…

网络与互联网体系结构 · 计算机科学 2022-10-07 Hammas Bin Tanveer , Rachee Singh , Paul Pearce , Rishab Nithyanand

The distributed denial of service (DDoS) attack is detrimental to businesses and individuals as we are heavily relying on the Internet. Due to remarkable profits, crackers favor DDoS as cybersecurity weapons in attacking servers, computers,…

密码学与安全 · 计算机科学 2021-04-02 Jianhua Li , Ximeng Liu , Jiong Jin , Shui Yu

Distributed Denial of Service (DDoS) is a common type of Cybercrime. It can strongly damage a company reputation and increase its costs. Attackers improve continuously their strategies. They doubled the amount of unleashed communication…

网络与互联网体系结构 · 计算机科学 2017-05-25 Michele Nogueira , Augusto Almeida Santos , José M. F. Moura

Distributed Denial of Service (DDoS) attack is a malicious attempt to disrupt the normal traffic of a targeted server, service or network by overwhelming the target or its surrounding infrastructure with a flood of Internet traffic.…

密码学与安全 · 计算机科学 2022-04-22 Aman Priyanshu , Sarthak Shastri , Sai Sravan Medicherla

Active network measurements constitute an impor- tant part in gaining a better understanding of the Internet. Although IPv4-wide scans are now easily possible, random active probing is infeasible in the IPv6 Internet. Therefore, we propose…

网络与互联网体系结构 · 计算机科学 2016-07-19 Oliver Gasser , Quirin Scheitle , Sebastian Gebhard , Georg Carle

Denial of Service (DoS) and Distributed Denial of Service (DDoS) attacks have emerged as a popular means of causing collection particular overhaul disruptions, often for total periods of instance. The relative ease and low costs of…

密码学与安全 · 计算机科学 2013-02-22 Saravanan Kumarasamy , Dr. R. Asokan

Intrusion Detection Systems (IDS) are critical components in safeguarding 5G/6G networks from both internal and external cyber threats. While traditional IDS approaches rely heavily on signature-based methods, they struggle to detect novel…

密码学与安全 · 计算机科学 2025-12-16 Neha , Tarunpreet Bhatia
‹ 上一页 1 2 3 10 下一页 ›