• DocumentCode
    1782777
  • Title

    Mitigating Eclipse attacks in Peer-To-Peer networks

  • Author

    Germanus, Daniel ; Roos, Stefanie ; Strufe, Thorsten ; Suri, Neeraj

  • Author_Institution
    CS Dept., Tech. Univ. Darmstadt, Darmstadt, Germany
  • fYear
    2014
  • fDate
    29-31 Oct. 2014
  • Firstpage
    400
  • Lastpage
    408
  • Abstract
    Peer-to-Peer (P2P) protocols usage is proliferating for a variety of applications including time- and safety-critical ones. While the distributed design of P2P provides inherent fault tolerance to certain failures, the large-scale decentralized coordination exhibits various exploitable security threats. One of these key threats are Eclipse attacks, where a large fraction of malicious peers can surround, i.e., eclipse benign peers. Topology-aware localized Eclipse attacks (taLEAs) are a new class of such attacks that allows for highly efficient denial of service attacks with a small amount of malicious resources. Our contribution is twofold: First, we show the generic susceptibility of structured P2P protocols to taLEAs. Second, we propose a new lookup mechanism for the proactive and reactive detection and mitigation of such attacks. Our novel lookup mechanism complements the common deterministic lookup with randomized decisions in order to reduce the predictability of the lookup. We validate our proposed technique via extensive simulations, increasing the lookup success to 100% in many scenarios.
  • Keywords
    fault tolerance; peer-to-peer computing; protocols; security of data; table lookup; Eclipse attacks mitigation; P2P protocols usage; denial of service attacks; deterministic lookup; eclipse benign peers; generic susceptibility; inherent fault tolerance; large-scale decentralized coordination; lookup mechanism; lookup success; malicious peers; peer-to-peer networks; predictability; randomized decisions; security threats; structured P2P protocols; topology-aware localized Eclipse attacks; Communication networks; Payloads; Peer-to-peer computing; Protocols; Routing; Search problems; Security; Distributed Hash Table; Localized Eclipse Attack; Mitigation; Peer-to-Peer Protocol; Security;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communications and Network Security (CNS), 2014 IEEE Conference on
  • Conference_Location
    San Francisco, CA
  • Type

    conf

  • DOI
    10.1109/CNS.2014.6997509
  • Filename
    6997509