TCP/IP Header Classification for Detecting Spoofed DDoS Attack in Cloud Environment

被引:0
|
作者
Osanaiye, Opeyemi. A. [1 ]
Dlodlo, Mqhele [1 ]
机构
[1] Univ Cape Town, Dept Elect Engn, Cape Town, South Africa
关键词
Cloud Computing; DDoS attack; IP Spoofing; OS Fingerprinting; TCP/IP Header;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Spoofing of IP is a key attribute of Distributed Denial of Service (DDoS) attack that consumes Cloud resources and network bandwidth within a short period of time. This is costly to both the providers and users of Cloud. Cloud computing offers a metered service, which uses pay-per use. Therefore providing a high available Cloud will improve the Cloud provider's reputation and financial proceeds. To the Cloud users, it solely depends on the provider for its resources therefore it must always be available as contained in the service level agreement (SLA). The goal of this paper is to analyse and compare the TCP/IP packet header features of incoming traffic that identifies remote hosts according to their Operating System. This is used to detect the true source of a packet during spoofed DDoS attack. Our solution further analyses the observed final TTL value in both active and passive stage of the OS fingerprints to cater for false negative during detection. We demonstrated our proposed solution on a Xen Cloud Platform Test bed.
引用
收藏
页码:219 / 224
页数:6
相关论文
共 50 条
  • [1] A Novel TCP/IP Header Hijacking Attack on SDN
    Mohammadi, Ali Akbar
    Hussain, Rasheed
    Oracevic, Alma
    Kazmi, Syed Muhammad Ahsan Raza
    Hussain, Fatima
    Aloqaily, Moayad
    Son, Junggab
    INFOCOM WKSHPS 2022 - IEEE Conference on Computer Communications Workshops, 2022,
  • [2] A Novel TCP/IP Header Hijacking Attack on SDN
    Mohammadi, Ali Akbar
    Hussain, Rasheed
    Oracevic, Alma
    Kazmi, Syed Muhammad Ahsan Raza
    Hussain, Fatima
    Aloqaily, Moayad
    Son, Junggab
    IEEE INFOCOM 2022 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (INFOCOM WKSHPS), 2022,
  • [3] T-RAP: (TCP Reply Acknowledgement Packet) a Resilient Filtering Model for DDoS Attack with Spoofed IP Address
    Kavisankar, L.
    Chellappan, C.
    TRENDS IN NETWORKS AND COMMUNICATIONS, 2011, 197 : 138 - 148
  • [4] An Efficient DDoS TCP Flood Attack Detection and Prevention System in a Cloud Environment
    Sahi, Aqeel
    Lai, David
    Li, Yan
    Diykh, Mohammed
    IEEE ACCESS, 2017, 5 : 6036 - 6048
  • [5] A STUDY OF DDOS ATTACK BASED TCP/IP PROTOCOL
    Li, Yan
    Jiang, Li
    INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE & TECHNOLOGY, PROCEEDINGS, 2009, : 274 - 276
  • [6] DDoS Defense Using TCP_IP Header Analysis and Proactive Tests
    Ye, Zhen
    Shi, Weiwei
    Ye, Dayong
    ITCS: 2009 INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND COMPUTER SCIENCE, PROCEEDINGS, VOL 2, PROCEEDINGS, 2009, : 548 - +
  • [7] A Lightweight Approach to Detect the Low/High Rate IP Spoofed Cloud DDoS Attacks
    Agrawal, Neha
    Tapaswi, Shashikala
    2017 IEEE 7TH INTERNATIONAL SYMPOSIUM ON CLOUD AND SERVICE COMPUTING (SC2 2017), 2017, : 118 - 123
  • [8] Detecting DDoS Attack using Software Defined Network (SDN) in Cloud Computing Environment
    Bhushan, Kriti
    Gupta, B. B.
    2018 5TH INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND INTEGRATED NETWORKS (SPIN), 2018, : 872 - 877
  • [9] An Adaptive and Lightweight Solution to Detect Mixed Rate IP Spoofed DDoS Attack in IoT Ecosystem
    Bhale, Pradeepkumar
    Biswas, Santosh
    Nandi, Sukumar
    IEEE INDICON: 15TH IEEE INDIA COUNCIL INTERNATIONAL CONFERENCE, 2018,
  • [10] Detecting DDoS Attacks in Cloud Computing Environment
    Lonea, A. M.
    Popescu, D. E.
    Tianfield, H.
    INTERNATIONAL JOURNAL OF COMPUTERS COMMUNICATIONS & CONTROL, 2013, 8 (01) : 70 - 78