A New Exploration of FB-Shrew Attack

A New Exploration of FB-Shrew Attack
复制标题

DOI:
10.1109/lcomm.2016.2596278
复制
发表时间:
2016-10
期刊:
IEEE Communications Letters
影响因子:
--
通讯作者:
Meng Yue;Zhi-jun Wu;Minxiao Wang
Meng Yue;Zhi-jun Wu;Minxiao Wang
中科院分区:
其他
文献类型:
--
作者:
Meng Yue;Zhi-jun Wu;Minxiao Wang

文献摘要

被引文献

相似文献

Shrew攻击是一种典型的以传输控制协议(TCP)为目标的低速拒绝服务攻击。Guirguis提出了Shrew攻击的一种变体,称为全缓冲Shrew(FB-Shrew)攻击。通过最大化攻击周期和最小化攻击率,FB-Shrew攻击可以达到最优的攻击效果。但是Guirguis的研究也存在一定的局限性,主要是忽略了TCP数据包与攻击数据包之间的竞争。在这封信中,我们重新研究了TCP拥塞窗口的行为模型与一个单一的TCP流暴露的攻击影响的上限。NS-2实验的测试结果表明,与Guirguis的模型相比,我们的模型提供了一个更真实,更准确,更高的上限FB-Shrew攻击的影响。
Shrew attack is a type of typical transmission control protocol (TCP)-targeted low-rate denial of service attacks. Guirguis proposed a variant of the Shrew attack, which is called the full-buffer Shrew (FB-Shrew) attack. By maximizing the attack period and minimizing the attack rate, FB-Shrew attack can achieve the optimal impact. However, Guirguis's study has some limitations that mainly lie in neglecting the competition between TCP packets and attack packets. In this letter, we restudy the behavior model of TCP congestion window with a single TCP flow to expose the upper bound of attack impact. Test results of NS-2 experiments indicate that, compared with Guirguis's model, our model provides a more realistic, more accurate, and higher upper bound on the impact of the FB-Shrew attack.