Prevention of DoS Attacks on Use-After-Free Vulnerabilities in Mosquitto

Prevention of DoS Attacks on Use-After-Free Vulnerabilities in Mosquitto
复制标题

DOI:
10.1016/j.procs.2022.09.234
复制
发表时间:
2022
期刊:
--
影响因子:
--
通讯作者:
T. Okamoto
T. Okamoto
中科院分区:
其他
文献类型:
--
作者:
T. Okamoto

文献摘要

相似文献

公共服务智能化正在推进,但智能公共服务面临网络攻击的重大风险。最常见的网络攻击之一是对未知漏洞的拒绝服务(DoS)攻击。从DoS中恢复需要响应,这可能会导致几个小时或几天的停机时间。然而,通过最大限度地减少停机时间来增强智能公共服务的弹性至关重要。本研究假设使用MQTT代理的智能灾难预防服务,旨在通过应用基于免疫的攻击检测来增强对网络攻击的弹性,正如作者向MQTT代理提出的那样。我们以前的工作表明,基于免疫的攻击检测可以检测到攻击的Mosquitto经纪人的一些漏洞具有较高的检测精度,但它不能正确地检测后使用免费漏洞的攻击。在本文中,我们提出了一种检测网络攻击的方法,并通过性能评估证明了该方法的有效性。
Smartification of public services is being promoted, but smart public services are at significant risk of cyberattacks. One of the most common cyberattacks is a denial-of-service (DoS) attack on unknown vulnerabilities. Recovery from DoS requires responses that may incur several hours or days of downtime. However, it is essential to enhance the resilience of smart public services by minimizing downtime. This study assumes a smart disaster prevention service using MQTT brokers and aims to enhance resilience against cyberattacks by applying immunity-based attack detection, as proposed by the authors to the MQTT brokers. Our previous work has shown that immunity-based attack detection could detect attacks on some vulnerabilities of the Mosquitto broker with high detection accuracy, but it could not correctly detect attacks on use-after-free vulnerabilities. In this paper, we propose a method for detecting cyberattacks, and demonstrate the effectiveness of the method through performance evaluation.