• DocumentCode
    1667281
  • Title

    Exploiting the transients of adaptation for RoQ attacks on Internet resources

  • Author

    Guirguis, Mina ; Bestavros, Azer ; Matta, Ibrahim

  • Author_Institution
    Dept. of Comput. Sci., Boston Univ., MA, USA
  • fYear
    2004
  • Firstpage
    184
  • Lastpage
    195
  • Abstract
    We expose an unorthodox adversarial attack that exploits the transients of a system´s adaptive behavior, as opposed to its limited steady-state capacity. We show that a well orchestrated attack could introduce significant inefficiencies that could potentially deprive a network element from much of its capacity, or significantly reduce its service quality, while evading detection by consuming an unsuspicious, small fraction of that element´s hijacked capacity. This type of attack stands in sharp contrast to traditional brute-force, sustained high-rate DoS attacks, as well as recently proposed attacks that exploit specific protocol settings such as TCP timeouts. We exemplify what we term as reduction of quality (RoQ) attacks by exposing the vulnerabilities of common adaptation mechanisms. We develop control-theoretic models and associated metrics to quantify these vulnerabilities. We present numerical and simulation results, which we validate with observations from real Internet experiments. Our findings motivate the need for the development of adaptation mechanisms that are resilient to these new forms of attacks.
  • Keywords
    Internet; quality of service; telecommunication security; transport protocols; Internet resource; reduction of quality attack; system adaptive behavior; transport control protocol timeout; unorthodox adversarial attack; Adaptive systems; Computer crashes; Computer crime; Computer science; Costs; Counting circuits; Numerical simulation; Protocols; Steady-state; Web and internet services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Protocols, 2004. ICNP 2004. Proceedings of the 12th IEEE International Conference on
  • ISSN
    1092-1648
  • Print_ISBN
    0-7695-2161-4
  • Type

    conf

  • DOI
    10.1109/ICNP.2004.1348109
  • Filename
    1348109