| 注册
首页|期刊导航|网络与信息安全学报|基于状态引导的放大漏洞挖掘方法

基于状态引导的放大漏洞挖掘方法

蒋思康 蔡瑞杰 尹小康 陈鸿羽 刘胜利

网络与信息安全学报2025,Vol.11Issue(1):165-177,13.
网络与信息安全学报2025,Vol.11Issue(1):165-177,13.DOI:10.11959/j.issn.2096-109x.2025012

基于状态引导的放大漏洞挖掘方法

Amplification vulnerability mining method based on state-guided

蒋思康 1蔡瑞杰 1尹小康 1陈鸿羽 1刘胜利1

作者信息

  • 1. 信息工程大学,河南 郑州 450001
  • 折叠

摘要

Abstract

Amplification-based distributed denial of service(ADDoS)attacks have posed a persistent and severe threat to the Internet.Recent incidents revealed that these attacks not only generated substantial traffic but also ex-ploited a diverse range of protocol types,with amplification vulnerabilities being identified as a primary cause.Tra-ditionally,known amplification vulnerabilities were discovered either through empirical knowledge or by analyzing traffic from amplification attack incidents,highlighting a lack of proactive methods for identifying such vulnerabili-ties.Existing approaches,such as AmpFuzz,were limited to focusing solely on amplification patterns for individual requests and were restricted to the UDP protocol,which constrained their applicability.To address these limitations,a state-guided method for mining amplification vulnerabilities,referred to as AFLAMP,was proposed.This method leveraged protocol state to guide fuzz testing and employed session-based bandwidth amplification coefficients for seed selection,thereby enhancing the effectiveness of vulnerability discovery.Experimental results demonstrate that AFLAMP successfully identifies amplification vulnerabilities,uncovering 11 vulnerabilities in five services known to be susceptible(OpenTFTP,OpenSLP,NTP,Memcached,and Dnsmasq),including six previously unknown vul-nerabilities.Compared to AmpFuzz,AFLAMP achieves 37.5%increase in the detection rate of vulnerabilities.Addi-tionally,AFLAMP identifies 12 amplification vulnerabilities in a TCP-based service program(LightFTP).

关键词

DDoS攻击/流量放大/模糊测试/协议状态/漏洞挖掘

Key words

DDoS attack/traffic amplification/fuzz testing/protocol state/vulnerability discovery

分类

信息技术与安全科学

引用本文复制引用

蒋思康,蔡瑞杰,尹小康,陈鸿羽,刘胜利..基于状态引导的放大漏洞挖掘方法[J].网络与信息安全学报,2025,11(1):165-177,13.

网络与信息安全学报

2096-109X

访问量0
|
下载量0
段落导航相关论文