Abstract

Distributed Denial of Service (DDoS) attacks are an increasing threat on the Internet. Until a few years ago, these types of attacks were only launched by people with advanced knowledge of computer networks. However, nowadays the ability to launch attacks have been offered as a service to everyone, even to those without any advanced knowledge. Booters are online tools that offer DDoS-as-a-Service. Some of them advertise, for less than U$ 5, up to 25 Gbps of DDoS traffic, which is more than enough to make most hosts and services on the Internet unavailable. Booters are increasing in popularity and they have shown the success of attacks against third party services, such as government websites; however, there are few mitigation proposals. In addition, existing literature in this area provides only a partial understanding of the threat, for example by analyzing only a few aspects of one specific Booter. In this paper, we propose mitigation solutions against DDoS-as-a-Service that will be achieved after an extensive characterization of Booters. Early results show 59 different Booters, which some of them do not deliver what is offered. This research is still in its initial phase and will contribute to a Ph.D. thesis after four years.
Original languageUndefined
Title of host publicationProceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014
EditorsAnna Sperotto, Guillaume Doyen, Steven Latré, Marinos Charalambides, Burkhard Stiller
Place of PublicationBerlin Heidelberg
PublisherSpringer
Pages74-78
Number of pages5
ISBN (Print)978-3-662-43861-9
DOIs
StatePublished - 30 Jun 2014

Publication series

NameLecture Notes in Computer Science
PublisherSpringer
Volume8508
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Fingerprint

Internet
Computer networks
Websites
Denial-of-service attack

Keywords

  • EWI-25301
  • METIS-309659
  • IR-93590

Cite this

Cardoso de Santanna, J. J., & Sperotto, A. (2014). Characterizing and Mitigating the DDoS-as-a-Service Phenomenon. In A. Sperotto, G. Doyen, S. Latré, M. Charalambides, & B. Stiller (Eds.), Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014 (pp. 74-78). (Lecture Notes in Computer Science; Vol. 8508). Berlin Heidelberg: Springer. DOI: 10.1007/978-3-662-43862-6_10

Cardoso de Santanna, José Jair; Sperotto, Anna / Characterizing and Mitigating the DDoS-as-a-Service Phenomenon.

Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014. ed. / Anna Sperotto; Guillaume Doyen; Steven Latré; Marinos Charalambides; Burkhard Stiller. Berlin Heidelberg : Springer, 2014. p. 74-78 (Lecture Notes in Computer Science; Vol. 8508).

Research output: Scientific - peer-reviewConference contribution

@inbook{175e4c6cbe6b45a984b1828dc0b4e6fc,
title = "Characterizing and Mitigating the DDoS-as-a-Service Phenomenon",
abstract = "Distributed Denial of Service (DDoS) attacks are an increasing threat on the Internet. Until a few years ago, these types of attacks were only launched by people with advanced knowledge of computer networks. However, nowadays the ability to launch attacks have been offered as a service to everyone, even to those without any advanced knowledge. Booters are online tools that offer DDoS-as-a-Service. Some of them advertise, for less than U$ 5, up to 25 Gbps of DDoS traffic, which is more than enough to make most hosts and services on the Internet unavailable. Booters are increasing in popularity and they have shown the success of attacks against third party services, such as government websites; however, there are few mitigation proposals. In addition, existing literature in this area provides only a partial understanding of the threat, for example by analyzing only a few aspects of one specific Booter. In this paper, we propose mitigation solutions against DDoS-as-a-Service that will be achieved after an extensive characterization of Booters. Early results show 59 different Booters, which some of them do not deliver what is offered. This research is still in its initial phase and will contribute to a Ph.D. thesis after four years.",
keywords = "EWI-25301, METIS-309659, IR-93590",
author = "{Cardoso de Santanna}, {José Jair} and Anna Sperotto",
note = "eemcs-eprint-25301",
year = "2014",
month = "6",
doi = "10.1007/978-3-662-43862-6_10",
isbn = "978-3-662-43861-9",
series = "Lecture Notes in Computer Science",
publisher = "Springer",
pages = "74--78",
editor = "Anna Sperotto and Guillaume Doyen and Steven Latré and Marinos Charalambides and Burkhard Stiller",
booktitle = "Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014",

}

Cardoso de Santanna, JJ & Sperotto, A 2014, Characterizing and Mitigating the DDoS-as-a-Service Phenomenon. in A Sperotto, G Doyen, S Latré, M Charalambides & B Stiller (eds), Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014. Lecture Notes in Computer Science, vol. 8508, Springer, Berlin Heidelberg, pp. 74-78. DOI: 10.1007/978-3-662-43862-6_10

Characterizing and Mitigating the DDoS-as-a-Service Phenomenon. / Cardoso de Santanna, José Jair; Sperotto, Anna .

Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014. ed. / Anna Sperotto; Guillaume Doyen; Steven Latré; Marinos Charalambides; Burkhard Stiller. Berlin Heidelberg : Springer, 2014. p. 74-78 (Lecture Notes in Computer Science; Vol. 8508).

Research output: Scientific - peer-reviewConference contribution

TY - CHAP

T1 - Characterizing and Mitigating the DDoS-as-a-Service Phenomenon

AU - Cardoso de Santanna,José Jair

AU - Sperotto,Anna

N1 - eemcs-eprint-25301

PY - 2014/6/30

Y1 - 2014/6/30

N2 - Distributed Denial of Service (DDoS) attacks are an increasing threat on the Internet. Until a few years ago, these types of attacks were only launched by people with advanced knowledge of computer networks. However, nowadays the ability to launch attacks have been offered as a service to everyone, even to those without any advanced knowledge. Booters are online tools that offer DDoS-as-a-Service. Some of them advertise, for less than U$ 5, up to 25 Gbps of DDoS traffic, which is more than enough to make most hosts and services on the Internet unavailable. Booters are increasing in popularity and they have shown the success of attacks against third party services, such as government websites; however, there are few mitigation proposals. In addition, existing literature in this area provides only a partial understanding of the threat, for example by analyzing only a few aspects of one specific Booter. In this paper, we propose mitigation solutions against DDoS-as-a-Service that will be achieved after an extensive characterization of Booters. Early results show 59 different Booters, which some of them do not deliver what is offered. This research is still in its initial phase and will contribute to a Ph.D. thesis after four years.

AB - Distributed Denial of Service (DDoS) attacks are an increasing threat on the Internet. Until a few years ago, these types of attacks were only launched by people with advanced knowledge of computer networks. However, nowadays the ability to launch attacks have been offered as a service to everyone, even to those without any advanced knowledge. Booters are online tools that offer DDoS-as-a-Service. Some of them advertise, for less than U$ 5, up to 25 Gbps of DDoS traffic, which is more than enough to make most hosts and services on the Internet unavailable. Booters are increasing in popularity and they have shown the success of attacks against third party services, such as government websites; however, there are few mitigation proposals. In addition, existing literature in this area provides only a partial understanding of the threat, for example by analyzing only a few aspects of one specific Booter. In this paper, we propose mitigation solutions against DDoS-as-a-Service that will be achieved after an extensive characterization of Booters. Early results show 59 different Booters, which some of them do not deliver what is offered. This research is still in its initial phase and will contribute to a Ph.D. thesis after four years.

KW - EWI-25301

KW - METIS-309659

KW - IR-93590

U2 - 10.1007/978-3-662-43862-6_10

DO - 10.1007/978-3-662-43862-6_10

M3 - Conference contribution

SN - 978-3-662-43861-9

T3 - Lecture Notes in Computer Science

SP - 74

EP - 78

BT - Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014

PB - Springer

ER -

Cardoso de Santanna JJ, Sperotto A. Characterizing and Mitigating the DDoS-as-a-Service Phenomenon. In Sperotto A, Doyen G, Latré S, Charalambides M, Stiller B, editors, Proceedings of the 8th IFIP WG 6.6 International Conference on Autonomous Infrastructure, Management, and Security, AIMS 2014. Berlin Heidelberg: Springer. 2014. p. 74-78. (Lecture Notes in Computer Science). Available from, DOI: 10.1007/978-3-662-43862-6_10