A Novel SIP Based Distributed Reflection Denial-of-Service Attack and an Effective Defense Mechanism

26Citations
Citations of this article
54Readers
Mendeley users who have this article in their library.

Abstract

We introduce a novel SIP based attack, named as the SR-DRDoS attack, that exploits some less known SIP features by using the IP-spoofing technique, the reflection based attack logic and the DDoS attack logic. Furthermore, we develop a SIP-based DoS/DDoS attack simulator, named Mr. SIP, and use it to implement our SR-DRDoS attack. Our attack is shown to dramatically increase the CPU load of a SIP server from 0% up to 100% in only 4 minutes after the attack is initiated. Since our intelligent attack creates legitimate traffic on the SIP network by using reflection methods, it bypasses black-lists as well as IP, packet-count or session/transaction based rate limiting and automatic message generation detection systems which exist in state-of-the-art security perimeters such as firewalls, intrusion detection/prevention systems and anomaly detection systems. Moreover, we propose a novel defense mechanism that effectively mitigates our proposed DRDoS attack. Our defense mechanism is shown to successfully reduce the CPU load of a SIP server under attack from 71% down to 18% within 3 minutes after it is initiated.

References Powered by Scopus

Anomaly-based network intrusion detection: Techniques, systems and challenges

1433Citations
N/AReaders
Get full text

Survey of network-based defense mechanisms countering the DoS and DDoS problems

566Citations
N/AReaders
Get full text

DDoS attacks and defense mechanisms: Classification and state-of-the-art

547Citations
N/AReaders
Get full text

Cited by Powered by Scopus

Machine Learning Approaches for Combating Distributed Denial of Service Attacks in Modern Networking Environments

119Citations
N/AReaders
Get full text

FBDR-Fuzzy Based DDoS Attack Detection and Recovery Mechanism for Wireless Sensor Networks

24Citations
N/AReaders
Get full text

Distributed reflection denial of service attack: A critical review

19Citations
N/AReaders
Get full text

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Cite

CITATION STYLE

APA

Melih Tas, I., Unsalver, B. G., & Baktir, S. (2020). A Novel SIP Based Distributed Reflection Denial-of-Service Attack and an Effective Defense Mechanism. IEEE Access, 8, 112574–112584. https://doi.org/10.1109/ACCESS.2020.3001688

Readers over time

‘20‘21‘22‘23‘24‘2506121824

Readers' Seniority

Tooltip

PhD / Post grad / Masters / Doc 7

47%

Lecturer / Post doc 4

27%

Professor / Associate Prof. 3

20%

Researcher 1

7%

Readers' Discipline

Tooltip

Computer Science 13

68%

Engineering 4

21%

Agricultural and Biological Sciences 1

5%

Business, Management and Accounting 1

5%

Save time finding and organizing research with Mendeley

Sign up for free
0