A cost-effective adaptive repair strategy to mitigate DDoS-capable IoT botnets

被引:0
|
作者
Hu, Jiamin [1 ]
Yang, Xiaofan [1 ]
机构
[1] Chongqing Univ, Sch Big Data & Software Engn, Chongqing, Peoples R China
来源
PLOS ONE | 2024年 / 19卷 / 12期
基金
中国国家自然科学基金;
关键词
PROPAGATION; EPIDEMICS; NETWORKS;
D O I
10.1371/journal.pone.0301888
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Distributed denial of service (DDoS) is a type of cyberattack in which multiple compromised systems flood the bandwidth or resources of a single system, making the flooded system inaccessible to legitimate users. Since large-scale botnets based on the Internet of Things (IoT) have been hotbeds for launching DDoS attacks, it is crucial to defend against DDoS-capable IoT botnets effectively. In consideration of resource constraints and frequent state changes for IoT devices, they should be equipped with repair measures that are cost-effective and adaptive to mitigate the impact of DDoS attacks. From the mitigation perspective, we refer to the collection of repair costs at all times as a repair strategy. This paper is then devoted to studying the problem of developing a cost-effective and adaptive repair strategy (ARS). First, we establish an IoT botware propagation model that fully captures the state evolution of an IoT network under attack and defense interventions. On this basis, we model the ARS problem as a data-driven optimal control problem, aiming to realize both learning and prediction of propagation parameters based on network traffic data observed at multiple discrete time slots and control of IoT botware propagation to a desired infection level. By leveraging optimal control theory, we propose an iterative algorithm to solve the problem, numerically obtaining the learned time-varying parameters and a repair strategy. Finally, the performance of the learned parameters and the resulting strategy are examined through computer experiments.
引用
收藏
页数:23
相关论文
共 50 条
  • [1] Analysis of DDoS-Capable IoT Malwares
    De Donno, Michele
    Dragoni, Nicola
    Giaretta, Alberto
    Spognardi, Angelo
    PROCEEDINGS OF THE 2017 FEDERATED CONFERENCE ON COMPUTER SCIENCE AND INFORMATION SYSTEMS (FEDCSIS), 2017, : 807 - 816
  • [2] DDoS-Capable IoT Malwares: Comparative Analysis and Mirai Investigation
    De Donno, Michele
    Dragoni, Nicola
    Giaretta, Alberto
    Spognardi, Angelo
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [3] Cost-effective strategy to mitigate transportation disruptions in supply chain
    Albertzeth, G.
    Pujawan, I. N.
    INTERNATIONAL CONFERENCE ON INDUSTRIAL AND SYSTEMS ENGINEERING (ICONISE) 2017, 2018, 337
  • [4] DynaShield: A Cost-Effective DDoS Defense Architecture
    Zheng, Shengbao
    Yang, Xiaowei
    SIGCOMM'18: PROCEEDINGS OF THE ACM SIGCOMM 2018 CONFERENCE: POSTERS AND DEMOS, 2018, : 15 - 17
  • [5] COST-EFFECTIVE HERNIA REPAIR
    BARNES, FE
    ARCHIVES OF SURGERY, 1993, 128 (05) : 600 - 600
  • [6] Development of a QoS Provisioning Capable Cost-Effective SDN-based Switch for IoT Communication
    Quang Huy Nguyen
    Ngoc Ha Do
    Hai-Chau Le
    2018 INTERNATIONAL CONFERENCE ON ADVANCED TECHNOLOGIES FOR COMMUNICATIONS (ATC), 2018, : 220 - 225
  • [7] An effective DDoS attack mitigation strategy for IoT using an optimization-based adaptive security model
    Kumar, Saurav
    Keshri, Ajit kumar
    KNOWLEDGE-BASED SYSTEMS, 2024, 299
  • [8] STRATEGY FOR COST-EFFECTIVE LABORATORY TESTING
    WERNER, M
    BROOKS, SH
    WETTE, R
    HUMAN PATHOLOGY, 1973, 4 (01) : 17 - 30
  • [9] Adaptive and Cost-effective Service Placement
    Khanh-Toan Tran
    Agoulmine, Nazim
    2011 IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE (GLOBECOM 2011), 2011,
  • [10] Cost-Effective Sharing of Streaming Dataflows for IoT Applications
    Chaturvedi, Shilpa
    Tyagi, Sahil
    Simmhan, Yogesh
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2021, 9 (04) : 1391 - 1407