Skip to main navigation Skip to search Skip to main content

Controlled virtual resource access to mitigate economic denial of sustainability (EDoS) attacks against cloud infrastructures

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

24 Scopus citations

Abstract

Service providers of the cloud have witnessed a rapidly growing demand to provide services to end-users in a timely manner. Security vulnerabilities against the cloud infrastructure cannot be overlooked. Through exploitation of such weaknesses, the adversary class may disrupt routine cloud operations, and have a debilitating effect on the reputation of the service provider. One attack type specifically affecting cloud services is the Economic Denial of Sustainability (EDoS) attack. Through such a malicious attack, the ability of the service provider to dynamically stretch and accommodate increasing numbers of requests from end-users, is exploited, to make it economically unviable for the service provider to sustain further demand for service from legitimate end-users. In this paper, we propose a novel approach for selectively controlling user requests for service, implemented at the service provider's end. Through this scheme, we reduce i.e mitigate the effects of an imminent EDoS attack against critical cloud resources. Incoming requests are classified into normal or suspicious. Subsequently, further analysis is conducted to ensure that priority to cloud service access is given to those end-users tagged as being legitimate, whereas, suspect users are given lesser priority to service access, until they are eventually removed from the suspect list. Simulations were conducted to study the performance of the scheme, with results showing promise.

Original languageEnglish
Title of host publicationProceedings - 2013 International Conference on Cloud Computing and Big Data, CLOUDCOM-ASIA 2013
PublisherIEEE Computer Society
Pages346-353
Number of pages8
ISBN (Print)9781479928293
DOIs
StatePublished - 2013
Event2013 International Conference on Cloud Computing and Big Data, CLOUDCOM-ASIA 2013 - Fuzhou, Fujian, China
Duration: 16 Dec 201318 Dec 2013

Publication series

NameProceedings - 2013 International Conference on Cloud Computing and Big Data, CLOUDCOM-ASIA 2013

Conference

Conference2013 International Conference on Cloud Computing and Big Data, CLOUDCOM-ASIA 2013
Country/TerritoryChina
CityFuzhou, Fujian
Period16/12/1318/12/13

Keywords

  • EDoS Attacks
  • Firewalls
  • Rate Control

ASJC Scopus subject areas

  • Software

Fingerprint

Dive into the research topics of 'Controlled virtual resource access to mitigate economic denial of sustainability (EDoS) attacks against cloud infrastructures'. Together they form a unique fingerprint.

Cite this