Warmonger Attack: A Novel Attack Vector in Serverless Computing

被引:0
|
作者
Xiong, Junjie [1 ]
Wei, Mingkui [2 ]
Lu, Zhuo [3 ]
Liu, Yao [1 ]
机构
[1] Univ S Florida, Dept Comp Sci & Engn, Tampa, FL 33620 USA
[2] George Mason Univ, Dept Cybersecur Engn, Fairfax, VA 22030 USA
[3] Univ S Florida, Dept Elect Engn, Tampa, FL 33620 USA
关键词
IP networks; Codes; Serverless computing; Costs; Vectors; Hardware; Computational modeling; Cloud computing; edge computing; serverless functions; denial-of-service; DEFENSE;
D O I
10.1109/TNET.2024.3437432
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We debut the Warmonger attack, a novel attack vector that can cause denial-of-service between a serverless computing platform and an external content server. The Warmonger attack exploits the fact that a serverless computing platform shares the same set of egress IPs among all serverless functions, which belong to different users, to access an external content server. As a result, a malicious user on this platform can purposefully misbehave and cause these egress IPs to be blocked by the content server, resulting in a platform-wide denial of service. To validate the effectiveness of the Warmonger attack, we conducted extensive experiments over several months, collecting and analyzing the egress IP usage patterns of five prominent serverless service providers (SSPs): Amazon Web Service (AWS) Lambda, Google App Engine, Microsoft Azure Functions, Cloudflare Workers, and Alibaba Function Compute. Additionally, we conducted a thorough evaluation of the attacker's potential actions to compromise an external server and trigger IP blocking. Our findings revealed that certain SSPs employ surprisingly small sets of egress IPs, sometimes as few as four, which are shared among their user base. Furthermore, our research demonstrates that the serverless platform offers ample opportunities for malicious users to engage in well-known disruptive behaviors, ultimately resulting in IP blocking. Our study uncovers a significant security threat within the burgeoning serverless computing platform and sheds light on potential mitigation strategies, such as the detection of malicious serverless functions and the isolation of such entities.
引用
收藏
页码:4826 / 4841
页数:16
相关论文
共 50 条
  • [41] ARASEC: Adaptive Resource Allocation and Model Training for Serverless EdgeCloud Computing
    Katare, Dewant
    Marin, Eduard
    Kourtellis, Nicolas
    Janssen, Marijn
    Ding, Aaron Yi
    IEEE INTERNET COMPUTING, 2024, 28 (06) : 17 - 27
  • [42] Toward a Technical Debt Conceptualization for Serverless Computing
    Lenarduzzi, Valentina
    Daly, Jeremy
    Martini, Antonio
    Panichella, Sebastiano
    Tamburri, Damian Andrew
    IEEE SOFTWARE, 2021, 38 (01) : 40 - 47
  • [43] Serverless Computing: Behind the Scenes of Major Platforms
    Kelly, Daniel
    Glavin, Frank
    Barrett, Enda
    2020 IEEE 13TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD 2020), 2020, : 304 - 312
  • [44] Serverless computing in omics data analysis and integration
    Grzesik, Piotr
    Augustyn, Dariusz R.
    Wycislik, Lukasz
    Mrozek, Dariusz
    BRIEFINGS IN BIOINFORMATICS, 2022, 23 (01)
  • [45] RESEARCH ON SECURITY EVALUATION OF CLOUD COMPUTING BASED ON ATTACK GRAPH
    Cheng, Yexia
    Du, Yuejin
    Xu, Junfeng
    Yuan, Chunyang
    Xue, Zhi
    2012 IEEE 2ND INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND INTELLIGENT SYSTEMS (CCIS) VOLS 1-3, 2012, : 459 - 465
  • [46] Neural Edge-cloud Computing with Information Cascade Attack
    Cheng, Yuhan
    Hu, Bintao
    Du, Jianbo
    2024 IEEE/CIC INTERNATIONAL CONFERENCE ON COMMUNICATIONS IN CHINA, ICCC, 2024,
  • [47] Game optimization for internal DDoS attack detection in cloud computing
    Faculty of Computer Science and Engineering, Xi'an University of Technology, Xi'an
    710048, China
    不详
    710071, China
    Jisuanji Yanjiu yu Fazhan, 8 (1873-1882): : 1873 - 1882
  • [48] Metamorphic Testing and Serverless Computing: A Basic Architecture
    Yusyn, Yakiv
    Zabolotnia, Tetiana
    INFORMATICA-AN INTERNATIONAL JOURNAL OF COMPUTING AND INFORMATICS, 2022, 46 (06): : 95 - 104
  • [49] Iluvatar: A Fast Control Plane for Serverless Computing
    Fuerst, Alexander
    Rehman, Abdul
    Sharma, Prateek
    PROCEEDINGS OF THE 32ND INTERNATIONAL SYMPOSIUM ON HIGH-PERFORMANCE PARALLEL AND DISTRIBUTED COMPUTING, HPDC 2023, 2023, : 267 - 280
  • [50] Serverless Vehicular Edge Computing for the Internet of Vehicles
    Alam, Faisal
    Toosi, Adel N.
    Cheema, Muhammad Aamir
    Cicconetti, Claudio
    Serrano, Pablo
    Iosup, Alesandru
    Tari, Zahir
    Sarvi, Majid
    IEEE INTERNET COMPUTING, 2023, 27 (04) : 40 - 51