Warmonger Attack: A Novel Attack Vector in Serverless Computing

被引:0
|
作者
Xiong, Junjie [1 ]
Wei, Mingkui [2 ]
Lu, Zhuo [3 ]
Liu, Yao [1 ]
机构
[1] Univ S Florida, Dept Comp Sci & Engn, Tampa, FL 33620 USA
[2] George Mason Univ, Dept Cybersecur Engn, Fairfax, VA 22030 USA
[3] Univ S Florida, Dept Elect Engn, Tampa, FL 33620 USA
关键词
IP networks; Codes; Serverless computing; Costs; Vectors; Hardware; Computational modeling; Cloud computing; edge computing; serverless functions; denial-of-service; DEFENSE;
D O I
10.1109/TNET.2024.3437432
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We debut the Warmonger attack, a novel attack vector that can cause denial-of-service between a serverless computing platform and an external content server. The Warmonger attack exploits the fact that a serverless computing platform shares the same set of egress IPs among all serverless functions, which belong to different users, to access an external content server. As a result, a malicious user on this platform can purposefully misbehave and cause these egress IPs to be blocked by the content server, resulting in a platform-wide denial of service. To validate the effectiveness of the Warmonger attack, we conducted extensive experiments over several months, collecting and analyzing the egress IP usage patterns of five prominent serverless service providers (SSPs): Amazon Web Service (AWS) Lambda, Google App Engine, Microsoft Azure Functions, Cloudflare Workers, and Alibaba Function Compute. Additionally, we conducted a thorough evaluation of the attacker's potential actions to compromise an external server and trigger IP blocking. Our findings revealed that certain SSPs employ surprisingly small sets of egress IPs, sometimes as few as four, which are shared among their user base. Furthermore, our research demonstrates that the serverless platform offers ample opportunities for malicious users to engage in well-known disruptive behaviors, ultimately resulting in IP blocking. Our study uncovers a significant security threat within the burgeoning serverless computing platform and sheds light on potential mitigation strategies, such as the detection of malicious serverless functions and the isolation of such entities.
引用
收藏
页码:4826 / 4841
页数:16
相关论文
共 50 条
  • [1] ATSSC: An Attack Tolerant System in Serverless Computing
    Zhang, Shuai
    Guo, Yunfei
    Hu, Hongchao
    Liu, Wenyan
    Wang, Yawen
    CHINA COMMUNICATIONS, 2024, 21 (06) : 192 - 205
  • [2] Warmonger: Inflicting Denial-of-Service via Serverless Functions in the Cloud
    Xiong, Junjie
    Wei, Mingkui
    Lu, Zhuo
    Liu, Yao
    CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 955 - 969
  • [3] Mitigating malicious denial of wallet attack using attribute reduction with deep learning approach for serverless computing on next generation applications
    Amal K. Alkhalifa
    Mohammed Aljebreen
    Rakan Alanazi
    Nazir Ahmad
    Sultan Alahmari
    Othman Alrusaini
    Ali Alqazzaz
    Hassan Alkhiri
    Scientific Reports, 15 (1)
  • [4] Will Serverless Computing Revolutionize NFV?
    Aditya, Paarijaat
    Akkus, Istemi Ekin
    Beck, Andre
    Chen, Ruichuan
    Hilt, Volker
    Rimac, Ivica
    Satzke, Klaus
    Stein, Manuel
    PROCEEDINGS OF THE IEEE, 2019, 107 (04) : 667 - 678
  • [5] Multi-Objective Deep Reinforcement Learning for Function Offloading in Serverless Edge Computing
    Yang, Yaning
    Du, Xiao
    Ye, Yutong
    Ding, Jiepin
    Wang, Ting
    Chen, Mingsong
    Li, Keqin
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2025, 18 (01) : 288 - 301
  • [6] A Serverless Computing Fabric for Edge & Cloud
    Nastic, Stefan
    Raith, Philipp
    Furutanpey, Alireza
    Pusztai, Thomas
    Dustdar, Schahram
    2022 IEEE 4TH INTERNATIONAL CONFERENCE ON COGNITIVE MACHINE INTELLIGENCE, COGMI, 2022, : 1 - 12
  • [7] Survey on serverless computing
    Hassan, Hassan B.
    Barakat, Saman A.
    Sarhan, Qusay I.
    JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2021, 10 (01):
  • [8] Survey on serverless computing
    Hassan B. Hassan
    Saman A. Barakat
    Qusay I. Sarhan
    Journal of Cloud Computing, 10
  • [9] Mitigating Cold Start Problem in Serverless Computing: A Reinforcement Learning Approach
    Vahidinia, Parichehr
    Farahani, Bahar
    Aliee, Fereidoon Shams
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (05) : 3917 - 3927
  • [10] Packet Faking Attack: A Novel Attack and Detection Mechanism in OppNets
    Alajeely, Majeed
    Ahmad, Asma'a
    Doss, Robin
    Mak-Hau, Vicky
    2014 TENTH INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY (CIS), 2014, : 638 - 642