All the latest UK technology news, reviews and analysis

Boffin claims DoS attack breakthrough

by John Geralds in Silicon Valley

09 Apr 2002

Be the first to comment

  • Tweet this

A computer scientist at the University of Massachusetts claims to have worked out a new technique for combating Denial of Service (DoS) attacks that requires adding a single bit of information to messages sent across the web.

Micah Adler, an assistant professor at the university's Department of Computer Science, explained that one of the main difficulties in dealing with DoS attacks is that information can be sent anonymously over the internet.

Messages are sent in bundles of bits called packets, which are despatched from source to destination along a series of routers. These routers do not store any information about past traffic and, in particular, there is no record of the course of a packet.

Adler said he has developed an automated method for tracing a stream of packets back to its source.

It uses a single bit in the header of each packet and requires each router along the path of attack to perform a simple random routine on each packet.

This determines whether the value of that bit should be a 1 or a 0 when the packet is received at its destination.

"If the victim receives a large number of packets from the same source, as would occur in a DoS attack, then it is virtually guaranteed to be able to determine the identity of every router along the path of those packets," he said. "This means that the victim knows the source of the attack."

But Adler pointed out that his method, which builds on an approach known as 'probabilistic packet marking', also has its drawbacks.

The number of packets required to reconstruct the path of the attack can be quite large, and grows exponentially with the length of the path.

"For longer paths, the number of packets required is too large to make this scheme practical," he admitted.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

30%

2%

14%

54%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Functional Oracle Support Analyst

Functional Oracle Support Analyst - EBS Financials, Support...

Oracle E-Business Suite Technical Consultant

Oracle E-Business Suite Technical Consultant - EBS...

Oracle Applications DBA

Oracle Applications DBA - East London - All salaries...

Oracle Functional Consultants

Oracle Functional Consultants - Financial - Project Accounting...

To send to more than one email address, simply separate each address with a comma.