Tracemax: A Novel Single Packet IP Traceback Strategy for Data-Flow Analysis

04/20/2020
by   Peter Hillmann, et al.
0

The identification of the exact path that packets are routed on in the network is quite a challenge. This paper presents a novel, efficient traceback strategy named Tracemax in context of a defense system against distributed denial of service (DDoS) attacks. A single packet can be directly traced over many more hops than the current existing techniques allow. In combination with a defense system it differentiates between multiple connections. It aims to letting non-malicious connections pass while bad ones get thwarted. The novel concept allows detailed analyses of the traffic and the transmission path through the network. The strategy can effectively reduce the effect of common bandwidth and resource consumption attacks, foster early warning and prevention as well as higher the availability of the network services for the wanted customers.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
08/04/2020

A Survey of Distributed Denial of Service Attacks and Defenses

A distributed denial-of-service (DDoS) attack is an attack wherein multi...
research
04/29/2022

Mitigating Low-volume DoS Attacks with Data-driven Resource Accounting

Low-volume Denial-of-Service (μDoS) attacks have been demonstrated to fu...
research
07/23/2020

Evaluating Snowflake as an Indistinguishable Censorship Circumvention Tool

Tor is the most well-known tool for circumventing censorship. Unfortunat...
research
05/12/2023

Aggressive Internet-Wide Scanners: Network Impact and Longitudinal Characterization

Aggressive network scanners, i.e., ones with immoderate and persistent b...
research
11/03/2020

You Do (Not) Belong Here: Detecting DPI Evasion Attacks with Context Learning

As Deep Packet Inspection (DPI) middleboxes become increasingly popular,...

Please sign up or login with your details

Forgot password? Click here to reset