Skip to main navigation Skip to search Skip to main content

Exploiting pitfalls in software-defined networking implementation

  • Munster Technological University
  • Nimbus Centre

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

The centralised control provided by Software-Defined Networking allows an increase in network security as all traffic can be vetted before leaving the attachment switch. Nevertheless, as in any complex system, there are implementation and policy compromises which lead to security vulnerabilities. This paper exploits such vulnerabilities to implement a suite of attacks, consisting of Address Resolution Protocol (ARP) cache poisoning, Man in the Middle, a firewall and access control bypassing port scan called a Phantom Host Scan, and a Distributed Denial of Service attack called a Phantom Storm which induces the participation of legitimate hosts. These attacks were successfully implemented in a Floodlight controlled network.

Original languageEnglish
Title of host publication2016 International Conference on Cyber Security and Protection of Digital Services, Cyber Security 2016
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781509007097
DOIs
Publication statusPublished - 30 Jun 2016
Externally publishedYes
Event2016 International Conference on Cyber Security and Protection of Digital Services, Cyber Security 2016 - London, United Kingdom
Duration: 13 Jun 201614 Jun 2016

Publication series

Name2016 International Conference on Cyber Security and Protection of Digital Services, Cyber Security 2016

Conference

Conference2016 International Conference on Cyber Security and Protection of Digital Services, Cyber Security 2016
Country/TerritoryUnited Kingdom
CityLondon
Period13/06/1614/06/16

Fingerprint

Dive into the research topics of 'Exploiting pitfalls in software-defined networking implementation'. Together they form a unique fingerprint.

Cite this