Title :
A novel distributed LDoS attack scheme against internet routing
Author :
Zhu Hongliang ; Xin Yang ; Wu Qiuxin ; You Fucheng
Author_Institution :
Beijing Univ. of Posts & Telecommun., Beijing, China
Abstract :
LDoS (Low-rate Denial of Service) attack, exploiting the flaws in the congestion avoidance mechanism of TCP protocol,is periodic, stealthy, and with high efficiency. Since BGP uses TCP as a transport protocol, it is subject to LDoS attacks as well. LDoS attacks can cause table reset, route flapping of BGP protocol. A deliberately constructed distributed low-rate DOS attacks can even generate surge of updates throughout the Internet. In this paper, we investigate the promotion of attack efficiency of this novel attack, and then propose an attack model to simulate the LDoS attack. Experiments prove that this attack model can exponentially lower the attack costs and improve the attack effect.
Keywords :
Internet; computer network security; routing protocols; transport protocols; BGP protocol route flapping; Internet routing; TCP protocol; congestion avoidance mechanism; distributed LDoS attack scheme; low-rate Denial of Service attack; transport protocol; Bandwidth; Computer crime; Educational institutions; Internet; Network topology; Throughput; Topology; BGP route flapping; attack efficiency; defense mechanisms; distributed low-rate DoS attacks;
Journal_Title :
Communications, China
DOI :
10.1109/CC.2014.7022532