Smurf-based Distributed Denial of Service (DDoS) Attack Amplification in Internet

Smurf-based Distributed Denial of Service (DDoS) Attack Amplification in Internet
复制标题

DOI:
10.1109/icimp.2007.42
复制
发表时间:
2007-07
期刊:
Second International Conference on Internet Monitoring and Protection (ICIMP 2007)
影响因子:
--
通讯作者:
Sanjeev Kumar
Sanjeev Kumar
中科院分区:
其他
文献类型:
--
作者:
Sanjeev Kumar

文献摘要

被引文献

相似文献

基于“蓝精灵”(Smurf)的分布式拒绝服务(DDoS)攻击是一种放大攻击,攻击者利用未受保护的中间网络来放大攻击流量负载,并将其导向受害计算机。在本文中,我们研究了导致“蓝精灵”攻击流量放大的因素,并了解原始攻击流量、中间未受保护网络和最终放大的攻击流量之间的关系。我们还定义了一个新术语,称为攻击放大因子,它表示原始攻击流量在向受害计算机传输过程中所经历的放大程度。本文还表明,利用这种攻击,攻击者有可能仅使用一个拨号调制解调器和一个未受保护的中间网络,就耗尽受害网络中诸如OC - 192这样的超高速光纤线路。
The Smurf-based distributed denial of service (DDoS) attack is an amplification attack where the attacker uses unprotected intermediate networks to amplify the attack traffic load and direct it to the victim computer. In this paper, we investigate the factors that contribute to the amplification of the smurf attack traffic and understand the relation among the original attack traffic, intermediate unprotected network and the final amplified attack traffic. We also define a new term called attack amplification factor which represents the degree of amplification that original attack traffic undergoes during its transmission towards the victim computer. It is also shown in this paper that utilizing this attack, it is possible for an attacker to just use a dialup modem and an unprotected intermediary network to exhaust even an ultra high speed optical line such as OC-192 of the victim network.