Skip to main navigation Skip to search Skip to main content

Creating a Large-scale Memory Error IoT Botnet Using NS3DockerEmulator

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

DDoSim, a simulation testbed for mimicking real-world, large-scale botnet DDoS attacks, is presented. DDoSim offers various capabilities, including running user-specified software, testing botnet-recruitment exploits, and measuring the severity of resulting DDoS attacks. DDoSim leverages NS3DockerEmulator's Docker and NS-3 integration to load Docker containers with actual binaries and connect them over a simulated NS-3 network. DDoSim is validated through a comparison with results from real hardware experiments. This paper focuses on the results of an experiment series concerning deploying a memory error botnet on IoT devices. Unlike the Mirai attack, which relies on default credentials, these experiments exploit memory error vulnerabilities to access IoT devices. DDoSim also implements realistic IoT churn, reflecting dynamic network conditions in real-world IoT environments. The results reveal that memory error vulnerabilities enable botnet recruitment, while network conditions, attack size, and duration all have a proportional impact on target servers. DDoSim is publicly available for researchers' use.
Original languageEnglish
Title of host publication53rd Annual IEEE/IFIP International Conference on Dependable Systems and Networks, DSN 2023
DOIs
StatePublished - 2023

Fingerprint

Dive into the research topics of 'Creating a Large-scale Memory Error IoT Botnet Using NS3DockerEmulator'. Together they form a unique fingerprint.

Cite this