Crossfire Attack Defense Method Based on Virtual Topology
Lei Guo, Shan Jing, Wei Jie Liang, Chuan Zhao · 2023
Aiming at the problem that conventional intrusion detection system is difficult to defend against Crossfire attacks, a method of detecting and defending Crossfire attacks is designed after analyzing the characteristics of Crossfire attacks deeply. This method utilizes Software Defined Network (SDN). Firstly, vulnerable network bottleneck nodes and links are screened out. On this basis, virtual topology is introduced to prevent Crossfire attacks. Finally, a slow start detection defense strategy is adopted to prevent Crossfire attacks. Experimental results show that the proposed method can effectively detect and mitigate such attacks in the SDN environment, and the normal forwarding of legitimate traffic in the physical topology is basically not affected in this process.