NIS04-5: Defending Against Meek DDoS Attacks by IP Traceback-based Rate Limiting

Yinan Jing,Xueping Wang,Xiaochun Xiao,Gendu Zhang
DOI: https://doi.org/10.1109/glocom.2006.283
2006-01-01
Abstract:Distributed denial-of-service attack is one of major threats to Internet today. Rate limit is an effective countermeasure to defeat rate-related attacks on condition that attackers send more traffics than legitimate users. However, sometimes the real case is opposite, because there may be only subtle rate difference between attackers and legitimate users today. We thoroughly investigate such a "meek" DDoS attack case and provide an elaborate IP traceback-based rate limit algorithm. The simulation results show that our method can better mitigate the meek DDoS attack as well as improve the throughput of legitimate traffic.
What problem does this paper attempt to address?