论文标题

通过IoT网络及时检测和缓解隐形DDOS攻击

Timely Detection and Mitigation of Stealthy DDoS Attacks via IoT Networks

论文作者

Doshi, Keval, Yilmaz, Yasin, Uludag, Suleyman

论文摘要

物联网(IoT)网络由传感器,执行器,移动设备和可连接到Internet的设备组成。由于市场上已经有数十亿此类设备具有很大的漏洞,因此互联网服务构成了危险的威胁,还有一些网络物理系统也与Internet连接。具体而言,由于其现有漏洞,IoT设备容易受到损害,并且是一种新型隐形分布式拒绝服务(DDOS)攻击的一部分,称为蒙古DDOS,其特征是其广泛分布的性质和来自每个源的小攻击大小。这项研究提出了一种新型基于异常的入侵检测系统(IDS),该系统能够及时检测和缓解这种新兴类型的DDOS攻击。通过数值和测试床实验,证明了拟议IDS检测和减轻其攻击尺寸的隐形DDOS攻击的能力。

Internet of Things (IoT) networks consist of sensors, actuators, mobile and wearable devices that can connect to the Internet. With billions of such devices already in the market which have significant vulnerabilities, there is a dangerous threat to the Internet services and also some cyber-physical systems that are also connected to the Internet. Specifically, due to their existing vulnerabilities IoT devices are susceptible to being compromised and being part of a new type of stealthy Distributed Denial of Service (DDoS) attack, called Mongolian DDoS, which is characterized by its widely distributed nature and small attack size from each source. This study proposes a novel anomaly-based Intrusion Detection System (IDS) that is capable of timely detecting and mitigating this emerging type of DDoS attacks. The proposed IDS's capability of detecting and mitigating stealthy DDoS attacks with even very low attack size per source is demonstrated through numerical and testbed experiments.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源