Detection, classification, and analysis of inter-domain traffic with spoofed source IP addresses

Franziska Lichtblau, Florian Streibelt, Thorben Krüger, Philipp Richter, Anja Feldmann · 2017

IP traffic with forged source addresses (i.e., spoofed traffic) enables a series of threats ranging from the impersonation of remote hosts to massive denial-of-service attacks. Consequently, IP address spoofing received considerable attention with efforts to either suppress spoofing, to mitigate its consequences, or to actively measure the ability to spoof in individual networks. However, as of today, we still lack a comprehensive understanding both of the prevalence and the characteristics of spoofed traffic "in the wild" as well as of the networks that inject spoofed traffic into the Internet.

Read the paper · More papers on PaperTik