...
首页> 外文期刊>Journal of Engineering & Applied Sciences >Effective Amplification Mitigation and Spoofing Detection During DNS Flooding Attacks on Internet
【24h】

Effective Amplification Mitigation and Spoofing Detection During DNS Flooding Attacks on Internet

机译:互联网DNS洪水攻击期间有效的放大缓解和欺骗检测

获取原文
获取原文并翻译 | 示例
           

摘要

Recent flooding attacks using Domain Name System (DNS) is used by cybercriminals to launch hundreds of gigabytes of attack traffic to paralyze their victims. The lack of security features in DNS protocol and adding security layers to this protocol is subject of further studying. In this research, we proposed a distributed mechanism to counter DNS reflection based attacks with high detection accuracy and little overhead on network channels. We suggested Distributed Defense Scheme (DDS) to provide authenticity to DNS transactions (i.e. request and response) through authentication message exchange. Then our classification filtering plays an important role in distinguishing between real bogus DNS requests and discarding the fake requests. Our analysis shows how DDS can remarkably reduce amplification factor for attack traffic without affecting normal traffic flow.
机译:近期使用域名系统(DNS)的洪水攻击由网络犯罪分子使用,推出数百千兆字节的攻击流量来瘫痪受害者。 DNS协议中缺乏安全性功能并将安全层添加到此协议上是进一步学习的。 在这项研究中,我们提出了一种分布式机制,以对基于DNS反射的攻击进行计数,具有高检测精度和网络信道的略微开销。 我们建议通过认证消息交换提供分布式防御方案(DDS),为DNS交易(即请求和响应)提供真实性。 然后我们的分类过滤在区分真正的虚假DNS请求和丢弃假请求时扮演重要作用。 我们的分析显示DDS如何显着降低攻击流量的放大因子,而不会影响正常的交通流量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号