Tornadoes In The Cloud: Worst-Case Attacks on Distributed Resources Systems
Jhonatan Tavori, Hanoch Levy
Abstract
Geographically distributed cloud networks are used by a variety of applications and services worldwide. As the demand for these services increases, their data centers form an attractive target for malicious attackers, aiming at harming the services. In this study we address sophisticated attackers who aim at causing maximal-damage to the service. A worst-case (damage-maximizing) attack is an attack which minimizes the revenue of the system operator, due to disrupting the users from being served. A sophisticated attacker needs to decide how many attacking agents should be launched at each of the systems regions, in order to inflict maximal damage. We characterize and analyze damage-maximization strategies for a number of attacks including deterministic attack, concur-rent stochastic agents attack, approximation of a virus-spread attack and over-size binomial attack. We also address user-migration defense, allowing to dynamically migrate demands among regions, and we provide efficient algorithms for deriving worst-case attacks given a system with arbitrary placement and demands. The results form a basis for devising resource allocation strategies aiming at minimizing attack damages.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 5e81b75d-cb77-4349-af63-a73af242a9eeRelated papers
- How to Attack and Congest Delay-Sensitive Applications on the CloudJhonatan Tavori, Hanoch LevyINFOCOM 2023 · 5 citations
- Worst-Case Attacks in Reactive Edge-Cloud Systems: Expected Latency and SLA ViolationJhonatan Tavori, Mehmet Kerem Türkcan, Zoran Kostic, Javad Ghaderi et al.INFOCOM 2026 · 1 citation
- Defending against Contagious Attacks on a Network with Resource ReallocationRufan Bai, Haoxing Lin, Xinyu Yang, Xiaowei Wu et al.AAAI 2021 · 4 citations
- Repttack: Exploiting Cloud Schedulers to Guide Co-Location AttacksChongzhou Fang, Han Wang, Najmeh Nazari, Behnam Omidi et al.NDSS 2022
- Reduced Cooling Redundancy: A New Security Vulnerability in a Hot Data CenterXing Gao, Zhang Xu, Haining Wang, Li Li et al.NDSS 2018 · 32 citations
