36,459 Hits in 5.9 sec

Evaluation of a low-rate DoS attack against application servers

Gabriel Maciá-Fernández, Jesús E. Díaz-Verdejo, Pedro García-Teodoro
2008 Computers & security  
Low-rate attack Network security Application servers Intrusion event a b s t r a c t In the network security field there is a need to identify new movements and trends that attackers might adopt, in order  ...  We show that it is possible to launch such attacks by using low-rate traffic directed against servers, and apply the proposed techniques to defeat a persistent HTTP server.  ...  quality of this paper.  ... 
doi:10.1016/j.cose.2008.07.004 fatcat:efgt6773krdz5p3j5m46ipv2fi

Defense techniques for low-rate DoS attacks against application servers

Gabriel Maciá-Fernández, Rafael A. Rodríguez-Gómez, Jesús E. Díaz-Verdejo
2010 Computer Networks  
In this paper, we focus on a specific attack: the low-rate DoS attack against application servers, and address the task of finding an effective defense against this attack.  ...  Such attacks are capable of discovering vulnerabilities in protocols or applications behavior to carry out a DoS with low-rate traffic.  ...  We also specially thank Pedro Garcí a Teodoro for his helpful comments.  ... 
doi:10.1016/j.comnet.2010.05.002 fatcat:wsviyoj4hzf3xlzry42d6id2xi

Advanced Random Time Queue Blocking for Effective Protection of Application Servers Against Low-Rate DoS Attacks

Kavitha R, Padmavathi G
2017 International Journal of Network Security  
Thus the defense of the application server against the low-rate DoS attack is be improved than IRTQB.  ...  Low-rate traffic denial-of-service (DoS) attacks are a strategy to deny services of a network by detecting the vulnerabilities in the application behaviors.  ...  [5] proposed evaluation method of low-rate DoS attack (LRDoS) against the iterative servers.  ... 
dblp:journals/ijnsec/RG17 fatcat:2kcxiuxsprcmvgtyahsgv575em

A Novel Protective Framework for Defeating HTTP-Based Denial of Service and Distributed Denial of Service Attacks

Mohammed A. Saleh, Azizah Abdul Manaf
2015 The Scientific World Journal  
Compared to the previous researches, our framework's design provides an efficient protection for web applications against all sorts of DoS/DDoS attacks.  ...  However, now this merit is threatened by complicated network-based attacks, such as denial of service (DoS) and distributed denial of service (DDoS) attacks.  ...  Acknowledgment This research paper took place in Universiti Teknologi Malaysia (UTM) with the financial support from the Ministry of Education of Malaysia, vote number R.K130000.7838.4F287.  ... 
doi:10.1155/2015/238230 pmid:26065015 pmcid:PMC4433694 fatcat:pcsx2niqsjcnbelcdtsxszey2e

A Novel Approach for Evaluating and Detecting Low Rate SIP Flooding Attack

Abhishek Kumar, P. Santhi Tilagam
2011 International Journal of Computer Applications  
server under low rate DoS attack.  ...  Low rate Denial-of Service (DoS) attack recently emerged as the greatest threat to enterprise VoIP systems.  ...  with LOCATION SERVER) against low rate DoS attack.  ... 
doi:10.5120/3067-4192 fatcat:veqhcrdtrzc3xnvjugntyvxnj4

Toward an Artificial Immune Server against Cyber Attacks: Enhancement of Protection against DoS Attacks

Mitsunobu Tarao, Takeshi Okamoto
2016 Procedia Computer Science  
This study describes our implementation of mechanisms of protection against denial of service (DoS) attacks, and their incorporation into the prototype system.  ...  The prototype of this artificial immune server adaptively acquired immunity against cyber attacks that exploit server vulnerabilities.  ...  In this paper, we incorporate mechanisms of protection against DoS attacks into the prototype system, and evaluate the continuity of server service against DoS attacks.  ... 
doi:10.1016/j.procs.2016.08.156 fatcat:hzjcxodgcrhb5dzmq3ho64dfnm

SDN-Assisted Network-Based Mitigation of Slow DDoS Attacks [article]

Thomas Lukaseder and Lisa Maile and Benjamin Erb and Frank Kargl
2018 arXiv   pre-print
The pressure to secure network services against such attacks is shifting more and more from the service operators to the network operators of the servers under attack.  ...  The servers of many network applications are not prepared for such attacks, either due to missing countermeasures or because their default configurations ignores such attacks.  ...  This work was supported in the bwNET100G+ project by the Ministry of Science, Research and the Arts Baden-Württemberg (MWK). The authors alone are responsible for the content of this paper.  ... 
arXiv:1804.06750v1 fatcat:jelfnllzmbe7fooljqybbk4g2e

A Practical Approach and Mitigation Techniques on Application Layer DDoS Attack in Web Server

Muhammad Yeasir, Muhammad Morshed, Mohammad Fakrul
2015 International Journal of Computer Applications  
In this paper, the authors show application layer DoS attack for HTTP web server using some open source DoS attack tools and also suggest some realistic mechanisms that can protect a web server from application-level  ...  DoS attacks especially while attacks targeting the resources including CPU, sockets, memory of the victim server.  ...  Regarding the defense against these low-rate DoS attacks, Sun et al.  ... 
doi:10.5120/ijca2015907209 fatcat:wajnuh4kuvfihfe644yez4rzte

Mathematical Model for Low-Rate DoS Attacks Against Application Servers

G. Macia-Fernandez, J.E. Diaz-Verdejo, P. Garcia-Teodoro
2009 IEEE Transactions on Information Forensics and Security  
In recent years, variants of denial of service (DoS) attacks that use low-rate traffic have been proposed, including the Shrew attack, reduction of quality attacks, and low-rate DoS attacks against application  ...  Index Terms-Denial of service (DoS) attacks, low-rate traffic, modeling techniques, network-level security and protection.  ...  ACKNOWLEDGMENT The authors would like to thank the anonymous reviewers for their invaluable comments and suggestions, which have contributed to the improvement of the final version of the paper.  ... 
doi:10.1109/tifs.2009.2024719 fatcat:c7m3v42x6vfyhlp4aodd2ytcxe

A Middleware System for Protecting Against Application Level Denial of Service Attacks [chapter]

Mudhakar Srivatsa, Arun Iyengar, Jian Yin, Ling Liu
2006 Lecture Notes in Computer Science  
In this paper we propose server-side middleware to counter application level DoS attacks.  ...  Our experiments show that our approach incurs low performance overhead and is resilient to application level DoS attacks.  ...  Most of this work was done while Mudhakar Srivatsa was a summer intern at IBM Research. At Georgia Tech, Mudhakar Srivatsa and Ling Liu were partially supported by NSF ITR, NSF CyberTrust and NSF CSR.  ... 
doi:10.1007/11925071_14 fatcat:ea6dwidnzjfsdnb2wi5jvsi6rq

Bruteforce Attacks Blocking Solution on Embedded SIP Communication Server

Filip Rezac, Jakub Safarik, Miroslav Voznak, Jan Rozhon, Karel Tomala, Jiri Vychodil
2013 Communications - Scientific Letters of the University of Zilina  
For each attack, this paper describes their impact on a SIP server, evaluation of the threat and the way in which they are executed.  ...  This article maps the most frequently used DoS attacks of today and evaluates the risk inherent to each of them.  ... 
doi:10.26552/com.c.2013.2a.180-184 fatcat:i6v2oqfdrjau5kvssrtacsgzda

Experimental Study of DDoS Defense System for Web Service

Namkyun Baik, Namhi Kang
2013 International Journal of Security and Its Applications  
The DDoS attack is one of the most serious threat to Internet services and further there is no perfect solution to defend against variously modified attacks to heterogeneous Internet services.  ...  To solve the problems, several defense mechanisms against DDoS attacks have been proposed in the literature.  ...  DDoS (Distributed DoS) attack, which is a kind of DoS attack, creates a load exceeding the resource capacity supported by the network or system by handling numerous zombie agents simultaneously in a distributed  ... 
doi:10.14257/ijsia.2013.7.5.13 fatcat:p4xs24aiqjbpnj5p4erjycg5e4

Rampart: Protecting Web Applications from CPU-Exhaustion Denial-of-Service Attacks

Wei Meng, Chenxiong Qian, Shuang Hao, Kevin Borgolte, Giovanni Vigna, Christopher Kruegel, Wenke Lee
2018 USENIX Security Symposium  
Denial-of-Service (DoS) attacks pose a severe threat to the availability of web applications.  ...  , and we also show that Rampart preserves web server performance with low false positive rate and low false negative rate.  ...  , either expressed or implied, of DARPA, NSF, ONR, or the U.S.  ... 
dblp:conf/uss/0001QHBVKL18 fatcat:hypvd54iqfb6dfbt2as6c674gq

Mitigating Low-volume DoS Attacks with Data-driven Resource Accounting [article]

ChangSeok Oh, Sangho Lee, Wen Xu, Rohan Devang Vora, Taesoo Kim
2022 arXiv   pre-print
Low-volume Denial-of-Service (μDoS) attacks have been demonstrated to fundamentally bypass traditional DoS mitigation schemes based on the flow and volume of network packets.  ...  Since ROKI focuses on capturing the symptom of DoS, it can effectively mitigate previously unknown μDoS attacks.  ...  Low-volume DoSDoS) Attack µDoS attacks aim to make victim servers unavailable with a small number of attack packets.  ... 
arXiv:2205.00056v1 fatcat:bzt4iondo5fk7axjgqui5pcgta

In-network server-directed client authentication and packet classification

Muhammad Jamshed, Jose Brustoloni
2010 IEEE Local Computer Network Conference  
Experiments demonstrate that FS can effectively protect servers against DDoS attacks at the network, transport, and application layers.  ...  When load on a server reaches a level suggestive of attack, FS intercepts traffic and requires the server's clients to authenticate.  ...  This paper proposes and evaluates Forward Sentinel (FS), a novel device that enables ISPs to protect web servers from DDoS attacks at the network, transport, and application layers.  ... 
doi:10.1109/lcn.2010.5735734 dblp:conf/lcn/JamshedB10 fatcat:c5p6vgmsfrdcrb4ko2kfz2hc6a
« Previous Showing results 1 — 15 out of 36,459 results