Introducing Fraudulent Energy Consumption in Cloud Infrastructures: A New Generation of Denial-of-Service Attacks

被引:22
|
作者
Ficco, Massimo [1 ]
Palmieri, Francesco [1 ]
机构
[1] Univ Naples 2, Dept Ind & Informat Engn, I-81031 Aversa, Italy
来源
IEEE SYSTEMS JOURNAL | 2017年 / 11卷 / 02期
关键词
Cloud infrastructures; denial of service; fraudulent energy consumption; intrusion prevention; low-rate attacks; RATE DOS ATTACK; SECURITY; DEFENSE;
D O I
10.1109/JSYST.2015.2414822
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Currently, cloud computing is the target business environment for many enterprises and government organizations. However, despite the huge potential gains that can be achieved, security represents a fundamental issue, which prevents the massive cloud adoption inmission-critical Information Technology sectors. The most common security issues are amplified in the cloud environment since new complex features, with their inherent weaknesses, enter into the problem space, particularly those associated to multitenancy and elasticity. Thus, new threats, such as the energy-related denial-of-service attacks against large-scale cloud infrastructures, may involve not only the quality of the delivered services but also their operational costs in terms of energy bill. The longer is the time necessary to identify such attacks, the heavier is the impact on the overall energy consumption and, consequently, on the associated expenses. This work presents a detailed analysis of such new sophisticated menaces, by focusing on those that are specifically tailored to originate the worst-case energy demands by leveraging properly crafted low-rate traffic patterns in order to ensure stealth operations. We present some strategies exploiting the cloud flexibility in order to increase in a fraudulent way the overall energy consumption and analyze their impact within large-scale cloud infrastructures. This should help cloud providers in understanding such weaknesses and highlighting their root causes, as well as in providing some hints on how they can counter these subtle security issues.
引用
收藏
页码:460 / 470
页数:11
相关论文
共 50 条
  • [1] Energy-oriented denial of service attacks: an emerging menace for large cloud infrastructures
    Francesco Palmieri
    Sergio Ricciardi
    Ugo Fiore
    Massimo Ficco
    Aniello Castiglione
    The Journal of Supercomputing, 2015, 71 : 1620 - 1641
  • [2] Energy-oriented denial of service attacks: an emerging menace for large cloud infrastructures
    Palmieri, Francesco
    Ricciardi, Sergio
    Fiore, Ugo
    Ficco, Massimo
    Castiglione, Aniello
    JOURNAL OF SUPERCOMPUTING, 2015, 71 (05) : 1620 - 1641
  • [3] Denial-of-Service Attacks on LoRaWAN
    van Es, Eef
    Vranken, Harald
    Hommersom, Arjen
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [4] Effectiveness and Detection of Denial-of-Service Attacks in Tor
    Danner, Norman
    Defabbia-Kane, Sam
    Krizanc, Danny
    Liberatore, Marc
    ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2012, 15 (03)
  • [5] Denial-of-Service Attacks on Wireless Sensor Network and Defense Techniques
    Ul Islam, Mohammad Nafis
    Fahmin, Ahmed
    Hossain, Md Shohrab
    Atiquzzaman, Mohammed
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 116 (03) : 1993 - 2021
  • [6] Denial-of-service attacks and countermeasures on BitTorrent
    Lehmann, Matheus Brenner
    Santos, Flavio Roberto
    Gaspary, Luciano Paschoal
    Barcellos, Marinho Pilla
    COMPUTER NETWORKS, 2012, 56 (15) : 3479 - 3498
  • [7] Design and Development of Proactive Models for Mitigating Denial-of-Service and Distributed Denial-of-Service Attacks
    Nagesh, H. R.
    Sekaran, K. Chandra
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2007, 7 (07): : 168 - 176
  • [8] Coping with Denial-of-Service Attacks on the IP Telephony System
    Cadet, Frantz
    Fokum, Daniel T.
    SOUTHEASTCON 2016, 2016,
  • [9] On the Move: Evading Distributed Denial-of-Service Attacks
    Stavrou, Angelos
    Fleck, Daniel
    Kolias, Constantinos
    COMPUTER, 2016, 49 (03) : 104 - 107
  • [10] Denial-of-Service Attacks in OpenFlow SDN Networks
    Kandoi, Rajat
    Antikainen, Markku
    PROCEEDINGS OF THE 2015 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM), 2015, : 1322 - 1326