@inproceedings{6d8ae6c89e654c48aba5e0189b8a621d,
title = "An MTD-driven Hybrid Defense Method Against DDoS Based on Markov Game in Multi-controller SDN-enabled IoT Networks",
abstract = "The widespread deployment of low-cost, vulnerable IoT devices allows attackers to exploit them to generate botnets and launch distributed denial-of-service (DDoS) attacks, which has become a serious security challenge for ensuring quality of service (QoS). For cost-effective defense against DDoS, we propose a novel hybrid defense method that includes proactive moving target defense (MTD) and passive security control to resist DDoS threats at different stages in IoT networks in this paper. We construct a multi-stage Markov game model to portray the game as a competition between the attacker and the defender for the control duration of the attack surface, and design an optimal defense strategy algorithm. In particular, we introduce a new parameter of action execution interval expectation in the game and add node importance evaluation in the reward quantification so that the optimal action execution interval of each defense technique can be output. We also consider the possibility that advanced attackers may launch DDoS on the SDN controller in the game. The experimental results demonstrate that our proposed method can defend against DDoS cost-effectively and ensure the QoS in IoT networks with acceptable overhead.",
keywords = "DDoS, Markov Game, Moving Target Defense, SDN-enabled IoT",
author = "Yuming Feng and Weizhe Zhang and Zijun Feng and Xiaoxiong Zhong and Fangming Liu",
note = "Publisher Copyright: {\textcopyright} 2024 IEEE.; 32nd IEEE/ACM International Symposium on Quality of Service, IWQoS 2024 ; Conference date: 19-06-2024 Through 21-06-2024",
year = "2024",
doi = "10.1109/IWQoS61813.2024.10682921",
language = "英语",
series = "IEEE International Workshop on Quality of Service, IWQoS",
publisher = "Institute of Electrical and Electronics Engineers Inc.",
booktitle = "2024 IEEE/ACM 32nd International Symposium on Quality of Service, IWQoS 2024",
address = "美国",
}