Title :
A Case Study in Opportunity Reduction: Mitigating the Dirt Jumper Drive-Smart Attack
Author :
Lathrop, Joel ; O´Kane, James B.
Abstract :
Over the past few years, a particularly virulent strain of distributed denial-of-service (DDoS) malware known as Dirt Jumper has emerged. It has progressed through several iterations and has recently developed capabilities to circumvent measures employed by certain anti-DDoS hosting providers, this new capability was exposed as a new attack type named -- smart. The primary contribution of this paper is to show how the mechanism of the -- smart attack can itself be exploited to prevent an attacking Dirt Jumper bot from reaching its desired target application webserver as well as tarpitting the botnet, reducing its request rate more than a hundred fold. This opportunity-reduction technique is briefly examined within the crime science framework of situational crime prevention.
Keywords :
Internet; computer network security; invasive software; DDoS malware; Dirt Jumper bot; Internet security; application Webserver; botnet; crime science framework; dirt jumper drive-smart attack; distributed denial-of-service; opportunity-reduction technique; situational crime prevention; smart attack; Browsers; Complexity theory; Computer crime; Logic gates; Malware; Servers; defensive exploitation; distributed denial-of-service (DDoS); opportunity-reduction;
Conference_Titel :
Intelligence and Security Informatics Conference (JISIC), 2014 IEEE Joint
Conference_Location :
The Hague
Print_ISBN :
978-1-4799-6363-8
DOI :
10.1109/JISIC.2014.41