首页|针对网络流量测量的完整性干扰攻击与防御方法

针对网络流量测量的完整性干扰攻击与防御方法

扫码查看
近年来,网络测量在评估网络状态、提高网络自适应能力方面取得了较好的性能,被广泛运用于网络管理中.然而,目前的大规模网络中存在异常行为导致的网络流量数据污染问题.例如,自治系统中的恶意节点通过伪造恶意流量数据来故意操纵网络指标,影响网络测量,误导下游任务决策.基于此,首先提出完整性干扰攻击方法,通过修改流量矩阵的最小代价,利用多策略干扰生成器生成恶意扰动流量的攻击策略,实现干扰流量测量的目的.然后,通过一种混合对抗训练策略,设计在网络中抵御此类攻击的防御方法,实现流量测量模型的安全加固.实验中对攻击目标进行了相应的限定,验证了完整性干扰攻击在受限场景下的攻击有效性.并通过混合训练的方式进行对比实验,验证了常规模型的加固方法可以提升模型的鲁棒性.
Integrity Interference Attack and Defense Methods for Network Traffic Measurement
In recent years,network measurement has achieved good performance in evaluating network status and improving net-work self-adaptability,and is widely used in network management.However,there is a problem of network traffic data pollution caused by abnormal behavior in the current large-scale network.For example,malicious nodes in autonomous systems intentional-ly manipulate network metrics by forging malicious traffic data,affecting network measurements and misleading downstream task decisions.Based on this,this paper first proposes an integrity jamming attack method.By modifying the minimum cost of the traf-fic matrix,a multi-strategy jamming generator is used to generate an attack strategy that maliciously disturbs traffic,so as to achieve the purpose of jamming traffic measurement.Then,by providing a hybrid adversarial training strategy,a defense method against such attacks in the network is designed to achieve security hardening of the traffic measurement model.In the experiment,the attack target is limited accordingly,and the effectiveness of the integrity interference attack in the restricted scenario is veri-fied.And through the comparison of the mixed training method,the robustness of the reinforcement method of the conventional model is verified.

Network traffic measurementSecurityAttack feasibilityAttack detection

郑海斌、刘欣然、陈晋音、王鹏程、王楦烨

展开 >

浙江工业大学信息工程学院 杭州 310023

浙江工业大学网络空间安全研究院 杭州 310023

网络流量测量 安全性 攻击可行性 攻击检测

浙江省自然科学基金国家自然科学基金

LDQ23F02000162072406

2024

计算机科学
重庆西南信息有限公司(原科技部西南信息中心)

计算机科学

CSTPCD北大核心
影响因子:0.944
ISSN:1002-137X
年,卷(期):2024.51(8)
  • 4