Challenges in Protecting Tor Hidden Services from Botnet Abuse

Challenges in Protecting Tor Hidden Services from Botnet Abuse
复制标题

保护 Tor 隐藏服务免遭僵尸网络滥用的挑战

DOI:
--
复制
发表时间:
2014
期刊:
Financial Cryptography
影响因子:
--
通讯作者:
Nicholas Hopper
Nicholas Hopper
中科院分区:
--
文献类型:
--
作者:
Nicholas Hopper

文献摘要

被引文献

相似文献

2013年8月,由于Mevade/Sefnit僵尸网络,Tor网络的性能突然急剧下降。这个僵尸网络将其指挥控制服务器作为Tor隐藏服务运行,因此所有受感染的节点都通过Tor联系指挥控制。在本文中,我们考虑了几个协议更改以保护ToR免受未来此类事件的影响,描述了必须解决的研究挑战,以便评估和部署每种方法。特别是,我们考虑了四种技术方法:基于资源的节流、保护节点节流、故障部分电路的重用和隐藏服务电路隔离。
In August 2013, the Tor network experienced a sudden, drastic reduction in performance due to the Mevade/Sefnit botnet. This botnet ran its command and control server as a Tor hidden service, so that all infected nodes contacted the command and control through Tor. In this paper, we consider several protocol changes to protect Tor against future incidents of this nature, describing the research challenges that must be solved in order to evaluate and deploy each of these methods. In particular, we consider four technical approaches: resource-based throttling, guard node throttling, reuse of failed partial circuits, and hidden service circuit isolation.