• DocumentCode
    1765110
  • Title

    Modeling the Vulnerability of Feedback-Control Based Internet Services to Low-Rate DoS Attacks

  • Author

    Yajuan Tang ; Xiapu Luo ; Qing Hui ; Chang, Rocky K. C.

  • Author_Institution
    Dept. of Electron. & Inf. Eng., Shantou Univ., Shantou, China
  • Volume
    9
  • Issue
    3
  • fYear
    2014
  • fDate
    41699
  • Firstpage
    339
  • Lastpage
    353
  • Abstract
    Feedback control is a critical element in many Internet services (e.g., quality-of-service aware applications). Recent research has demonstrated the vulnerability of some feedback-control based applications to low-rate denial-of-service (LRDoS) attacks, which send high-intensity requests in an ON/OFF pattern to degrade the victim´s performance and evade the detection designed for traditional DoS attacks. However, the intricate interaction between LRDoS attacks and the feedback control mechanism remains largely unknown. In this paper, we address two fundamental questions: 1) what is the impact of an LRDoS attack on a general feedback-control based system and 2) how to conduct a systematic evaluation of the impact of an LRDoS attack on specific feedback-control based systems. To tackle these problems, we model the system under attack as a switched system and then examine its properties. We conduct the first theoretical investigation on the impact of the LRDoS attack on a general feedback control system. We formally show that the attack can make the system´s steady-state error oscillate along with the attack period, and prove the existence of LRDoS attacks that can force the system to be far off the desired state. In addition, we propose a novel methodology to systematically characterize the impact of an LRDoS attack on specific systems, and apply it to a web server and an IBM Notes server. This investigation obtains many new insights, such as new attack scenarios, the bound of the system´s states, the relationship between the bound and the LRDoS attacks, the close-formed equations for quantifying the impact, and so on. The extensive experimental results are congruent with the theoretical analysis.
  • Keywords
    Internet; computer network security; quality of service; IBM Notes server; Internet services; LRDoS attacks; Web server; feedback control mechanism; low-rate DoS attacks; low-rate denial-of-service; quality-of-service aware applications; switched system; Computer crime; Feedback control; Steady-state; Switched systems; Switches; Web servers; Feedback control; low-rate DoS attack; performance degradation; stability; switched system;
  • fLanguage
    English
  • Journal_Title
    Information Forensics and Security, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1556-6013
  • Type

    jour

  • DOI
    10.1109/TIFS.2013.2291970
  • Filename
    6670771