2020
DOI: 10.1109/access.2020.2987479
|View full text |Cite
|
Sign up to set email alerts
|

Thwarting ICMP Low-Rate Attacks Against Firewalls While Minimizing Legitimate Traffic Loss

Abstract: Low-rate distributed denial of service (LDDoS) attacks pose more challenging threats that disrupt network security devices and services. Such type of attacks is difficult to detect and mitigate. In LDDoS attacks, attacker uses low-volume of malicious traffic that looks alike legitimate traffic. Thus, it can enter the network in silence without any notice. However, it may have severe effect on disrupting network services, depleting system resources, and degrading network speed to a point considering them as one… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1

Citation Types

0
3
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
5
1

Relationship

1
5

Authors

Journals

citations
Cited by 8 publications
(3 citation statements)
references
References 26 publications
(28 reference statements)
0
3
0
Order By: Relevance
“…In addition, this will also lead to corrective actions not only for the breached components, but also for all other similar components to protect them from similar incidents. For example, if we collect detailed information about many DDoS and low-rate DDoS (LDDoS) [74] attacks that occurred in different smart city systems, it will provide a larger sample for analytics and could lead to identifying common preconditions that made these attacks possible and also find more accurate information about the sources and mechanisms used in the attacks. As a result, the response occurs faster and delivers more accurate and adaptive countermeasures.…”
Section: A Security Risk Analysis Enhancementsmentioning
confidence: 99%
“…In addition, this will also lead to corrective actions not only for the breached components, but also for all other similar components to protect them from similar incidents. For example, if we collect detailed information about many DDoS and low-rate DDoS (LDDoS) [74] attacks that occurred in different smart city systems, it will provide a larger sample for analytics and could lead to identifying common preconditions that made these attacks possible and also find more accurate information about the sources and mechanisms used in the attacks. As a result, the response occurs faster and delivers more accurate and adaptive countermeasures.…”
Section: A Security Risk Analysis Enhancementsmentioning
confidence: 99%
“…Traditional networks consist of static protocols for network equipment, such as routers and switches, where it is not possible to implement network protocols. Therefore network administrators find it difficult to define custom routing protocols [8]. The SDN controller eliminates routing issues in the SDN network with the use of logical connections.…”
Section: Introductionmentioning
confidence: 99%
“…This integration has undoubtedly improved the efficiency of processes, reduced spatio-temporal investments, and bestowed faster return on investments. While this indus-trial evolution has been extensively reviewed and studied [3], [4], [5], there is a growing concern that the increased connectivity of critical infrastructures such as thermal powerhouses, electricity grids, hospitals, hotels, banking, and defense systems makes them vulnerable to numerous cyber-attacks [6], [7], [8]. Resultantly, a hacker can hack into the end devices and install malware or modify the software components.…”
Section: Introductionmentioning
confidence: 99%