CAPoW: Context-Aware AI-Assisted Proof of Work based DDoS Defense

01/27/2023
by   Trisha Chakraborty, et al.
0

Critical servers can be secured against distributed denial of service (DDoS) attacks using proof of work (PoW) systems assisted by an Artificial Intelligence (AI) that learns contextual network request patterns. In this work, we introduce CAPoW, a context-aware anti-DDoS framework that injects latency adaptively during communication by utilizing context-aware PoW puzzles. In CAPoW, a security professional can define relevant request context attributes which can be learned by the AI system. These contextual attributes can include information about the user request, such as IP address, time, flow-level information, etc., and are utilized to generate a contextual score for incoming requests that influence the hardness of a PoW puzzle. These puzzles need to be solved by a user before the server begins to process their request. Solving puzzles slow down the volume of incoming adversarial requests. Additionally, the framework compels the adversary to incur a cost per request, hence making it expensive for an adversary to prolong a DDoS attack. We include the theoretical foundations of the CAPoW framework along with a description of its implementation and evaluation.

READ FULL TEXT
research
03/21/2022

A Policy Driven AI-Assisted PoW Framework

Proof of Work (PoW) based cyberdefense systems require incoming network ...
research
07/31/2020

Using Context and Interactions to Verify User-Intended Network Requests

Client-side malware can attack users by tampering with applications or u...
research
01/21/2021

Adversarial Machine Learning for Flooding Attacks on 5G Radio Access Network Slicing

Network slicing manages network resources as virtual resource blocks (RB...
research
06/20/2016

Criticality Aware Multiprocessors

Typically, a memory request from a processor may need to go through many...
research
07/25/2020

Insightful Assistant: AI-compatible Operation Graph Representations for Enhancing Industrial Conversational Agents

Advances in voice-controlled assistants paved the way into the consumer ...
research
09/17/2020

SYSTEM AND METHOD FOR PROVIDING CONTEXT AWARE ROAD-USER IMPORTANCE ESTIMATION

A system and method for providing context-aware road user importance est...
research
07/07/2018

Gargoyle: A Network-based Insider Attack Resilient Framework for Organizations

`Anytime, Anywhere' data access model has become a widespread IT policy ...

Please sign up or login with your details

Forgot password? Click here to reset