CAPnet: A Defense Against Cache Accounting Attacks on Content Distribution Networks

06/25/2019
by   Ghada Almashaqbeh, et al.
0

Peer-assisted content distribution networks(CDNs) have emerged to improve performance and reduce deployment costs of traditional, infrastructure-based content delivery networks. This is done by employing peer-to-peer data transfers to supplement the resources of the network infrastructure. However, these hybrid systems are vulnerable to accounting attacks in which the peers, or caches, collude with clients in order to report that content was transferred when it was not. This is a particular issue in systems that incentivize cache participation, because malicious caches may collect rewards from the content publishers operating the CDN without doing any useful work. In this paper, we introduce CAPnet, the first technique that lets untrusted caches join a peer-assisted CDN while providing a bound on the effectiveness of accounting attacks. At its heart is a lightweight cache accountability puzzle that clients must solve before caches are given credit. This puzzle requires colocating the data a client has requested, so its solution confirms that the content (or at least an amount of data within a pre-configured bound) has actually been retrieved. We analyze the security and overhead of our scheme in realistic scenarios. The results show that a modest client machine using a single core can solve puzzles at a rate sufficient to simultaneously watch dozens of 1080p videos. The technique is designed to be even more scalable on the server side. In our experiments, one core of a single low-end machine is able to generate puzzles for 4.26 Tbps of bandwidth - enabling 870,000 clients to concurrently view the same 1080p video. This demonstrates that our scheme can ensure cache accountability without degrading system productivity.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/04/2017

OCDN: Oblivious Content Distribution Networks

As publishers increasingly use Content Distribution Networks (CDNs) to d...
research
07/05/2020

Decentralized Lightweight Detection of Eclipse Attacks on Bitcoin Clients

Clients of permissionless blockchain systems, like Bitcoin, rely on an u...
research
10/29/2019

Shielding Collaborative Learning: Mitigating Poisoning Attacks through Client-Side Detection

Collaborative learning allows multiple clients to train a joint model wi...
research
12/01/2022

Split Learning without Local Weight Sharing to Enhance Client-side Data Privacy

Split learning (SL) aims to protect user data privacy by splitting deep ...
research
07/02/2019

Enhancing Email Functionality using Late Bound Content

Email is one of the most successful computer applications yet devised. C...
research
03/06/2017

PSUM:Peer-to-peer multimedia content distribution using collusion-resistant fingerprinting

The use of peer-to-peer (P2P) networks for multimedia distribution has s...
research
10/02/2019

Content Delivery Through Hybrid Architecture in Video on Demand System

Peer-to-Peer (P2P) network needs architectural modification for smooth a...

Please sign up or login with your details

Forgot password? Click here to reset