首页> 外文期刊>Peer-to-peer networking and applications >On the feasibility of exploiting P2P systems to launch DDoS attacks
【24h】

On the feasibility of exploiting P2P systems to launch DDoS attacks

机译:利用P2P系统发起DDoS攻击的可行性

获取原文
获取原文并翻译 | 示例
           

摘要

We show that malicious nodes in a peer-to-peer (P2P) system may impact the external Internet environment, by causing large-scale distributed denial of service (DDoS) attacks on nodes not even part of the overlay system. This is in contrast to attacks that disrupt the normal functioning, and performance of the overlay system itself. We demonstrate the significance of the attacks in the context of mature and extensively deployed P2P systems with representative and contrasting membership management algorithms-Kad, a DHT-based file-sharing system, and ESM, a gossip-based video broadcasting system. We then present an evaluation study of three possible mitigation schemes and discuss their strength and weakness. These schemes include (ⅰ) preferring pull-based membership propagation over push-based; (ⅱ) corroborating membership information through multiple sources; and (ⅲ) bounding multiple references to the same network entity. We evaluate the schemes through both experiments on PlanetLab with real and synthetic traces, and measurement of the real deployments. Our results show the potential of the schemes in enhancing the DDoS resilience of P2P systems, and also reveal the weakness in the schemes and regimes where they may not be sufficient.
机译:我们显示,对等(P2P)系统中的恶意节点可能通过对甚至不是覆盖系统一部分的节点造成大规模的分布式拒绝服务(DDoS)攻击来影响外部Internet环境。这与破坏覆盖系统本身的正常功能和性能的攻击相反。我们通过具有代表性和对比性的成员资格管理算法-Kad(基于DHT的文件共享系统)和ESM(基于八卦的视频广播系统),在成熟且广泛部署的P2P系统的背景下证明了攻击的重要性。然后,我们对三种可能的缓解方案进行了评估研究,并讨论了它们的优缺点。这些方案包括:(ⅰ)倾向于基于拉的成员资格传播而不是基于推的成员资格传播; (ⅱ)通过多种渠道证实会员信息; (ⅲ)将多个参考绑定到同一网络实体。我们通过在PlanetLab上进行的真实和合成跟踪实验以及实际部署的测量,来评估方案。我们的结果表明了该方案在增强P2P系统的DDoS弹性方面的潜力,并且还揭示了该方案和方案可能不够完善的缺点。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号