pith. sign in

arxiv: 1712.01102 · v3 · pith:JKJAN4UAnew · submitted 2017-12-04 · 💻 cs.CR

Moving-target Defense against Botnet Reconnaissance and an Adversarial Coupon-Collection Model

classification 💻 cs.CR
keywords defensemoving-targetadversarialmodelreconnaissanceserverssystemallowing
0
0 comments X
read the original abstract

We consider a cloud based multiserver system consisting of a set of replica application servers behind a set of proxy (indirection) servers which interact directly with clients over the Internet. We study a proactive moving-target defense to thwart a DDoS attacker's reconnaissance phase and consequently reduce the attack's impact. The defense is effectively a moving-target (motag) technique in which the proxies dynamically change. The system is evaluated using an AWS prototype of HTTP redirection and by numerical evaluations of an adversarial coupon-collector mathematical model, the latter allowing larger-scale extrapolations.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.