DocumentCode :
567165
Title :
Smart crawlers for flash-crowd DDoS: The attacker´s perspective
Author :
Drinfeld, D. ; Vlajic, N.
Author_Institution :
Dept. of Comput. Sci. & Eng., York Univ., Toronto, ON, Canada
fYear :
2012
fDate :
10-12 June 2012
Firstpage :
37
Lastpage :
44
Abstract :
Flash-crowd DDoS attacks - in which the attacking bots aim to appear indistinguishable from the regular visitors to the victim web-site - have only recently been identified in the literature. While generally seen as the most advanced and most potent type of DDoS, flash crowd attacks are only partially understood, and their practical viability is still very much unclear. To the best of our knowledge, this is the first study that takes the perspective of a potential attacker interested in executing a flash crowd DDoS, and looks at the challenges of designing a botnet that would carry out that execution effectively. The results of our study demonstrate that, through the use of some popular readily available Internet tools, the attacker is likely to succeed in harvesting critical information about any perspective victim site, and thus be in the position to customize his bots (i.e., make them behave very close to how a typical human visitor to the given site would behave). Clearly, better bot customization would imply more powerful and harder-to-defend-against DDoS attacks.
Keywords :
Web sites; security of data; software agents; Web site; attacking bots; bot customization; flash-crowd DDoS attack; smart crawler; Computer crime; Estimation; Google; Humans; Internet; Servers; Web pages; bot design; flash crowd attack; layer-7 DDoS; web page popularity estimation; web-log analysis;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Internet Security (WorldCIS), 2012 World Congress on
Conference_Location :
Guelph, ON
Print_ISBN :
978-1-4673-1108-3
Type :
conf
Filename :
6280193
Link To Document :
بازگشت