Title :
Mathematical Model for Low-Rate DoS Attacks Against Application Servers
Author :
Maciá-Fernández, Gabriel ; Díaz-Verdejo, Jesús E. ; García-Teodoro, Pedro
Author_Institution :
Dept. of Signal Theor., Telematics & Commun., Univ. of Granada, Granada, Spain
Abstract :
In recent years, variants of denial of service (DoS) attacks that use low-rate traffic have been proposed, including the Shrew attack, reduction of quality attacks, and low-rate DoS attacks against application servers (LoRDAS). All of these are flooding attacks that take advantage of vulnerability in the victims for reducing the rate of the traffic. Although their implications and impact have been comprehensively studied, mainly by means of simulation, there is a need for mathematical models by which the behaviour of these sometimes complex processes can be described. In this paper, we propose a mathematical model for the LoRDAS attack. This model allows us to evaluate its performance by relating it to the configuration parameters of the attack and the dynamics of network and victim. The model is validated by comparing the performance values given against those obtained from a simulated environment. In addition, some applicability issues for the model are contributed, together with interpretation guidelines to the model´s behaviour. Finally, experience of the model enables us to make some recommendations for the challenging task of building defense techniques against this attack.
Keywords :
network servers; security of data; telecommunication security; telecommunication traffic; Shrew attack; application servers; denial of service attacks; flooding attacks; low-rate traffic; network level security; Denial of service (DoS) attacks; low-rate traffic; modeling techniques; network-level security and protection;
Journal_Title :
Information Forensics and Security, IEEE Transactions on
DOI :
10.1109/TIFS.2009.2024719