Cargando…

Generator of Slow Denial-of-Service Cyber Attacks †

In today’s world, the volume of cyber attacks grows every year. These attacks can cause many people or companies high financial losses or loss of private data. One of the most common types of attack on the Internet is a DoS (denial-of-service) attack, which, despite its simplicity, can cause catastr...

Descripción completa

Detalles Bibliográficos
Autores principales: Sikora, Marek, Fujdiak, Radek, Kuchar, Karel, Holasova, Eva, Misurec, Jiri
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2021
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8401215/
https://www.ncbi.nlm.nih.gov/pubmed/34450915
http://dx.doi.org/10.3390/s21165473
_version_ 1783745498418511872
author Sikora, Marek
Fujdiak, Radek
Kuchar, Karel
Holasova, Eva
Misurec, Jiri
author_facet Sikora, Marek
Fujdiak, Radek
Kuchar, Karel
Holasova, Eva
Misurec, Jiri
author_sort Sikora, Marek
collection PubMed
description In today’s world, the volume of cyber attacks grows every year. These attacks can cause many people or companies high financial losses or loss of private data. One of the most common types of attack on the Internet is a DoS (denial-of-service) attack, which, despite its simplicity, can cause catastrophic consequences. A slow DoS attack attempts to make the Internet service unavailable to users. Due to the small data flows, these attacks are very similar to legitimate users with a slow Internet connection. Accurate detection of these attacks is one of the biggest challenges in cybersecurity. In this paper, we implemented our proposal of eleven major and most dangerous slow DoS attacks and introduced an advanced attack generator for testing vulnerabilities of protocols, servers, and services. The main motivation for this research was the absence of a similarly comprehensive generator for testing slow DoS vulnerabilities in network systems. We built an experimental environment for testing our generator, and then we performed a security analysis of the five most used web servers. Based on the discovered vulnerabilities, we also discuss preventive and detection techniques to mitigate the attacks. In future research, our generator can be used for testing slow DoS security vulnerabilities and increasing the level of cyber security of various network systems.
format Online
Article
Text
id pubmed-8401215
institution National Center for Biotechnology Information
language English
publishDate 2021
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-84012152021-08-29 Generator of Slow Denial-of-Service Cyber Attacks † Sikora, Marek Fujdiak, Radek Kuchar, Karel Holasova, Eva Misurec, Jiri Sensors (Basel) Article In today’s world, the volume of cyber attacks grows every year. These attacks can cause many people or companies high financial losses or loss of private data. One of the most common types of attack on the Internet is a DoS (denial-of-service) attack, which, despite its simplicity, can cause catastrophic consequences. A slow DoS attack attempts to make the Internet service unavailable to users. Due to the small data flows, these attacks are very similar to legitimate users with a slow Internet connection. Accurate detection of these attacks is one of the biggest challenges in cybersecurity. In this paper, we implemented our proposal of eleven major and most dangerous slow DoS attacks and introduced an advanced attack generator for testing vulnerabilities of protocols, servers, and services. The main motivation for this research was the absence of a similarly comprehensive generator for testing slow DoS vulnerabilities in network systems. We built an experimental environment for testing our generator, and then we performed a security analysis of the five most used web servers. Based on the discovered vulnerabilities, we also discuss preventive and detection techniques to mitigate the attacks. In future research, our generator can be used for testing slow DoS security vulnerabilities and increasing the level of cyber security of various network systems. MDPI 2021-08-13 /pmc/articles/PMC8401215/ /pubmed/34450915 http://dx.doi.org/10.3390/s21165473 Text en © 2021 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Sikora, Marek
Fujdiak, Radek
Kuchar, Karel
Holasova, Eva
Misurec, Jiri
Generator of Slow Denial-of-Service Cyber Attacks †
title Generator of Slow Denial-of-Service Cyber Attacks †
title_full Generator of Slow Denial-of-Service Cyber Attacks †
title_fullStr Generator of Slow Denial-of-Service Cyber Attacks †
title_full_unstemmed Generator of Slow Denial-of-Service Cyber Attacks †
title_short Generator of Slow Denial-of-Service Cyber Attacks †
title_sort generator of slow denial-of-service cyber attacks †
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8401215/
https://www.ncbi.nlm.nih.gov/pubmed/34450915
http://dx.doi.org/10.3390/s21165473
work_keys_str_mv AT sikoramarek generatorofslowdenialofservicecyberattacks
AT fujdiakradek generatorofslowdenialofservicecyberattacks
AT kucharkarel generatorofslowdenialofservicecyberattacks
AT holasovaeva generatorofslowdenialofservicecyberattacks
AT misurecjiri generatorofslowdenialofservicecyberattacks