• DocumentCode
    37436
  • Title

    A novel distributed LDoS attack scheme against internet routing

  • Author

    Zhu Hongliang ; Xin Yang ; Wu Qiuxin ; You Fucheng

  • Author_Institution
    Beijing Univ. of Posts & Telecommun., Beijing, China
  • Volume
    11
  • Issue
    13
  • fYear
    2014
  • fDate
    Supplement 2014
  • Firstpage
    101
  • Lastpage
    107
  • Abstract
    LDoS (Low-rate Denial of Service) attack, exploiting the flaws in the congestion avoidance mechanism of TCP protocol,is periodic, stealthy, and with high efficiency. Since BGP uses TCP as a transport protocol, it is subject to LDoS attacks as well. LDoS attacks can cause table reset, route flapping of BGP protocol. A deliberately constructed distributed low-rate DOS attacks can even generate surge of updates throughout the Internet. In this paper, we investigate the promotion of attack efficiency of this novel attack, and then propose an attack model to simulate the LDoS attack. Experiments prove that this attack model can exponentially lower the attack costs and improve the attack effect.
  • Keywords
    Internet; computer network security; routing protocols; transport protocols; BGP protocol route flapping; Internet routing; TCP protocol; congestion avoidance mechanism; distributed LDoS attack scheme; low-rate Denial of Service attack; transport protocol; Bandwidth; Computer crime; Educational institutions; Internet; Network topology; Throughput; Topology; BGP route flapping; attack efficiency; defense mechanisms; distributed low-rate DoS attacks;
  • fLanguage
    English
  • Journal_Title
    Communications, China
  • Publisher
    ieee
  • ISSN
    1673-5447
  • Type

    jour

  • DOI
    10.1109/CC.2014.7022532
  • Filename
    7022532