Creating a Large-scale Memory Error IoT Botnet Using NS3DockerEmulator
Creating a Large-scale Memory Error IoT Botnet Using NS3DockerEmulator
复制标题
DOI:
10.1109/dsn58367.2023.00051
复制
发表时间:
2023-06
期刊:
影响因子:
--
通讯作者:
Islam Obaidat;Bennett Kahn;Fatemeh Tavakoli;Meera Sridhar
中科院分区:
文献类型:
--
作者:
Islam Obaidat;Bennett Kahn;Fatemeh Tavakoli;Meera Sridhar
DDoSim, a simulation testbed for mimicking real-world, large-scale botnet DDoS attacks, is presented. DDoSim offers various capabilities, including running user-specified software, testing botnet-recruitment exploits, and measuring the severity of resulting DDoS attacks. DDoSim leverages NS3DockerEmulator's Docker and NS-3 integration to load Docker containers with actual binaries and connect them over a simulated NS-3 network. DDoSim is validated through a comparison with results from real hardware experiments. This paper focuses on the results of an experiment series concerning deploying a memory error botnet on IoT devices. Unlike the Mirai attack, which relies on default credentials, these experiments exploit memory error vulnerabilities to access IoT devices. DDoSim also implements realistic IoT churn, reflecting dynamic network conditions in real-world IoT environments. The results reveal that memory error vulnerabilities enable botnet recruitment, while network conditions, attack size, and duration all have a proportional impact on target servers. DDoSim is publicly available for researchers' use.