Forum for Science, Industry and Business

Sponsored by:     3M 
Search our Site:

 

Cebit 2017: CISPA Researchers Present Early Warning System for Mass Cyber Attacks

16.03.2017

Mass attacks from the Internet are a common fear: Millions of requests in a short time span overload online services, grinding them to a standstill for hours and bringing Internet companies to their knees. The operators of the site under attack can often only react by redirecting the wave of requests, or by countering it with an exceptionally powerful server. This has to happen very quickly, however. Researchers from the Competence Center for IT Security, CISPA, at the Saarland University have developed a kind of early warning system for this purpose. Details and first results will be presented by the scientists at the computer fair Cebit in Hannover.

These mass cyber attacks, known as “Distributed Denial of Service” (DDoS) attacks, are considered to be one of the scourges of the Internet. Because they are relatively easy to conduct, they are used by teenagers for digital power games, by criminals as a service for the cyber mafia, or by governments as a digital weapon.


At CISPA researchers are mapping mass cyber attacks in realtime

Universität des Saarlandes/CISPA

According to the software enterprise Kaspersky, some 80 countries were affected in the last quarter of 2016 alone, and counting. Last October, for example, several major online platforms such as Twitter, Netflix, Reddit and Spotify were unavailable to Internet users in North America, Germany, and Japan for several hours. A new type of DDoS attack, a so-called amplification attack, was found to be the source of these outages.

“What makes this so insidious is that the attackers achieve maximum damage with very little effort,” says Christian Rossow, professor for IT security at the Saarland University, and head of the System Security Group at the local IT Security Competence Center, CISPA. Remote-controlled computers are used to direct requests at vulnerable systems in such a way that the system’s responses far exceed the number of requests. The request addresses are then replaced by the Internet address of the victim. Rossow has identified 14 different Internet protocols that can be exploited for this kind of attack.

To investigate these malicious attacks, and the people and motives behind them more closely, Rossow has developed a special kind of digital bait for distributed attacks (also known as honeypots), in collaboration with the CISPA researchers Lukas Krämer and Johannes Krupp and with colleagues from Japan. 21 of these honeypot traps were laid out in the more obscure corners of the Internet, enabling the researchers to document more than 1.5 million attacks.

In this manner, he could identify the different phases of attacks which helped develop an early warning system from the data. He additionally attached secret digital markers to the attack codes he discovered in the digital wilderness, and was thus able to trace the source of the attacks. “This is quite impressive, because these address counterfeiters usually remain hidden by default,” says Rossow.

This is not the first time that Rossow has systematically infiltrated cyber-criminals’ networks. He also managed to take down the infamous botnet “Gameover Zeus” in a similar manner, on behalf of the US domestic intelligence service FBI. In the meantime, he has redesigned his bait to match the latest varieties of DDoS attacks. Cyber-criminals today no longer rely on vulnerable servers, but also attack networked televisions, webcams, or even refrigerators. The “Internet of Things” makes it possible.

Background: Competence Center for IT Security CISPA

CISPA was founded at the Saarland University as a competence center for IT security in October 2011, with the support of the German Federal Ministry of Education and Research. It combines the IT security research of the Saarland University’s Computer Science department, as well as that of its on-campus partners, the Max Planck Institute for Computer Science, the Max Planck Institute for Software Systems, and the German Research Center for Artificial Intelligence, DFKI. Meanwhile CISPA has developed into an established research center for IT security with international appeal. Due to the excellent quality of its scientific publications and projects, CISPA is one of the leading research centers for IT security in the world today.

Additional Information:

Link to Paper “AmpPot: Monitoring and Defending Against Amplification DDoS Attacks”
http://christian-rossow.de/publications/iotpot-woot2015.pdf

Press photos can be found here free of charge www.uni-saarland.de/pressefotos

Further Inquiries:
Prof. Dr. Christian Rossow
Center for IT Security, Privacy and Accountability
Saarland Informatics Campus E9.1
Phone: +49 681 / 302-70797
E-Mail: rossow@cispa.saarland

Johannes Krupp
Center for IT-Security, Privacy and Accountability
Saarland Informatics Campus E9.1
Phone: +49 681 / 302-70805
E-Mail: johannes.krupp@cispa.saarland>

Editor:
Gordon Bolduan
Competence Center Computer Science Saarland
Phone: +49 681 302-70741
E-Mail: gbolduan@mmci.uni-saarland.de

Weitere Informationen:

http://christian-rossow.de/publications/iotpot-woot2015.pdf

Friederike Meyer zu Tittingdorf | Universität des Saarlandes

More articles from Trade Fair News:

nachricht Medica 2018: Mobile motion feedback to help patients reduce relieving postures when walking
07.11.2018 | Technische Universität Kaiserslautern

nachricht Medica 2018: Control with your feet - computer game to help prevent thrombosis
05.11.2018 | Technische Universität Kaiserslautern

All articles from Trade Fair News >>>

The most recent press releases about innovation >>>

Die letzten 5 Focus-News des innovations-reports im Überblick:

Im Focus: Nonstop Tranport of Cargo in Nanomachines

Max Planck researchers revel the nano-structure of molecular trains and the reason for smooth transport in cellular antennas.

Moving around, sensing the extracellular environment, and signaling to other cells are important for a cell to function properly. Responsible for those tasks...

Im Focus: UNH scientists help provide first-ever views of elusive energy explosion

Researchers at the University of New Hampshire have captured a difficult-to-view singular event involving "magnetic reconnection"--the process by which sparse particles and energy around Earth collide producing a quick but mighty explosion--in the Earth's magnetotail, the magnetic environment that trails behind the planet.

Magnetic reconnection has remained a bit of a mystery to scientists. They know it exists and have documented the effects that the energy explosions can...

Im Focus: A Chip with Blood Vessels

Biochips have been developed at TU Wien (Vienna), on which tissue can be produced and examined. This allows supplying the tissue with different substances in a very controlled way.

Cultivating human cells in the Petri dish is not a big challenge today. Producing artificial tissue, however, permeated by fine blood vessels, is a much more...

Im Focus: A Leap Into Quantum Technology

Faster and secure data communication: This is the goal of a new joint project involving physicists from the University of Würzburg. The German Federal Ministry of Education and Research funds the project with 14.8 million euro.

In our digital world data security and secure communication are becoming more and more important. Quantum communication is a promising approach to achieve...

Im Focus: Research icebreaker Polarstern begins the Antarctic season

What does it look like below the ice shelf of the calved massive iceberg A68?

On Saturday, 10 November 2018, the research icebreaker Polarstern will leave its homeport of Bremerhaven, bound for Cape Town, South Africa.

All Focus news of the innovation-report >>>

Anzeige

Anzeige

VideoLinks
Industry & Economy
Event News

Optical Coherence Tomography: German-Japanese Research Alliance hosted Medical Imaging Conference

19.11.2018 | Event News

“3rd Conference on Laser Polishing – LaP 2018” Attracts International Experts and Users

09.11.2018 | Event News

On the brain’s ability to find the right direction

06.11.2018 | Event News

 
Latest News

Nonstop Tranport of Cargo in Nanomachines

20.11.2018 | Life Sciences

Researchers find social cultures in chimpanzees

20.11.2018 | Life Sciences

When AI and optoelectronics meet: Researchers take control of light properties

20.11.2018 | Physics and Astronomy

VideoLinks
Science & Research
Overview of more VideoLinks >>>