DocumentCode :
2769496
Title :
Coping with packet replay attacks in wireless networks
Author :
Feng, Zi ; Ning, Jianxia ; Broustis, Ioannis ; Pelechrinis, Konstantinos ; Krishnamurthy, Srikanth V. ; Faloutsos, Michalis
Author_Institution :
UC Riverside, Riverside, CA, USA
fYear :
2011
fDate :
27-30 June 2011
Firstpage :
368
Lastpage :
376
Abstract :
In this paper, we consider a variant of packet replay attacks wherein, an attacker simply replays overheard frames as they are, or with minor manipulations in the packet header; we refer to this as the copycat attack. When routers forward such replayed packets, the levels of congestion and interference increase in large portions of the network. Our experiments indicate that even a single attacker can degrade the route throughput by up to 61%. While simple to use techniques such as digitally signing every packet can stem the dissemination of such packets, they are resource intense. Thus, we design a lightweight detection and prevention system, COPS (for Copycat Online Prevention System), that intelligently uses a combination of digital signatures and Bloom filters to cope with the attack. With our system, the task of identifying and discarding replayed packets is distributed across a plurality of nodes on a route. We implement COPS on real hardware and perform experiments on our 42 node wireless testbed. Our measurements indicate that COPS achieves its objective; it can efficiently contain the effects of replayed packets to a local neighborhood without incurring high resource consumption penalties. Specifically, we show that COPS reduces the route throughput degradation by up to 66%.
Keywords :
digital signatures; filtering theory; radio networks; radiofrequency interference; telecommunication network routing; telecommunication security; Bloom filter; COPS; copycat attack; copycat online prevention system; digital signature; network congestion; network interference; overheard frame; packet dissemination; packet header; packet replay attack; replayed packet; router; wireless network; Degradation; Digital signatures; Performance evaluation; Public key; Throughput; Wireless communication;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Sensor, Mesh and Ad Hoc Communications and Networks (SECON), 2011 8th Annual IEEE Communications Society Conference on
Conference_Location :
Salt Lake City, UT
ISSN :
2155-5486
Print_ISBN :
978-1-4577-0094-1
Type :
conf
DOI :
10.1109/SAHCN.2011.5984919
Filename :
5984919
Link To Document :
بازگشت