Detection and mitigation of localized attacks in a widely deployed P2P network

Thibault Cholez 1 Isabelle Chrisment 2 Olivier Festor 2 Guillaume Doyen 1
1 ERA - Environnement de Réseaux Autonomes
ICD - Institut Charles Delaunay
2 MADYNES - Management of dynamic networks and services
LORIA - NSS - Department of Networks, Systems and Services, Inria Nancy - Grand Est
Abstract : Several large scale P2P networks operating on the Internet are based on a Distributed Hash Table. These networks offer valuable services, but they all suffer from a critical issue allowing malicious nodes to be inserted in specific places on the DHT for undesirable purposes (monitoring, distributed denial of service, pollution, etc.). While several attacks and attack scenarios have been documented, few studies have measured the actual deployment of such attacks and none of the documented countermeasures have been tested for compatibility with an already deployed network. In this article, we focus on the KAD network. Based on large scale monitoring campaigns, we show that the world-wide deployed KAD network suffers large number of suspicious insertions around shared contents and we quantify them. To cope with these peers, we propose a new efficient protection algorithm based on analyzing the distribution of the peers' ID found around an entry after a DHT lookup. We evaluate our solution and show that it detects the most efficient configurations of inserted peers with a very small false-negative rate, and that the countermeasures successfully filter almost all the suspicious peers. We demonstrate the direct applicability of our approach by implementing and testing our solution in real P2P networks.
Document type :
Journal articles
Complete list of metadatas

Cited literature [19 references]  Display  Hide  Download

https://hal.inria.fr/hal-00786438
Contributor : Thibault Cholez <>
Submitted on : Friday, February 8, 2013 - 3:48:46 PM
Last modification on : Monday, July 15, 2019 - 11:50:13 AM
Long-term archiving on : Monday, June 17, 2013 - 8:26:11 PM

File

detection_mitigation_sybil_att...
Files produced by the author(s)

Identifiers

Collections

Citation

Thibault Cholez, Isabelle Chrisment, Olivier Festor, Guillaume Doyen. Detection and mitigation of localized attacks in a widely deployed P2P network. Peer-to-Peer Networking and Applications, Springer, 2012, Special Issue on Experimental Evaluation of Peer-to-Peer Applications, 6 (2), pp.155-174. ⟨http://link.springer.com/article/10.1007%2Fs12083-012-0137-7⟩. ⟨10.1007/s12083-012-0137-7⟩. ⟨hal-00786438⟩

Share

Metrics

Record views

618

Files downloads

507