Attacking the Kad network-real world evaluation and high fidelity simulation using DVN

被引:3
作者
Wang, Peng [1 ]
Tyra, James [1 ]
Chan-Tin, Eric [1 ]
Malchow, Tyson [1 ]
Kune, Denis Foo [1 ]
Hopper, Nicholas [1 ]
Kim, Yongdae [1 ]
机构
[1] Univ Minnesota, Dept Comp Sci, St Paul, MN USA
关键词
P2P; Kad; simulation; attack; security;
D O I
10.1002/sec.172
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Kad network, an implementation of the Kademlia DHT protocol, supports the popular eDonkey peer-to-peer file sharing network and has over 1 million concurrent nodes. We describe several attacks that exploit critical design weaknesses in Kad to allow an attacker with modest resources to cause a significant fraction of all searches to fail. We measure the cost and effectiveness of these attacks against a set of 16000 nodes connected to the operational Kad network. Using our large-scale simulator, DVN, we successfully scaled up to a 200000 node experiment. We also measure the cost of previously proposed, generic DHT attacks against the Kad network and find that our attacks are much more cost effective. Finally, we introduce and evaluate simple mechanisms to significantly increase the cost of these attacks. Copyright (c) 2010 John Wiley & Sons, Ltd.
引用
收藏
页码:1556 / 1575
页数:20
相关论文
共 40 条
  • [1] [Anonymous], 2002, INT WORKSH PEER TO P
  • [2] Castro M, 2002, OPERATING SYSTEMS DE
  • [3] PlanetLab: An overlay testbed for broad-coverage services
    Chun, B
    Culler, D
    Roscoe, T
    Bavier, A
    Peterson, L
    Wawrzoniak, M
    Bowman, M
    [J]. ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2003, 33 (03) : 3 - 12
  • [4] Condie T, 2006, NETW DISTR SYST SEC
  • [5] Cowie J, 1999, INT C PAR DISTR PROC
  • [6] Danezis G, 2005, EUR S RES COMP SEC
  • [7] El Defrawy K, 2007, USENIX SRUTI
  • [8] Fiat A, 2002, ACM SIAM S DISCR ALG
  • [9] Fiat A, 2005, EUR S ALG
  • [10] Friedman E., 2001, J. of Economics and Management Strategy