Institute of Electrical & Electronic Engineers
As DDoS attackers pursue monetary profit, Critical Internet Sites (CISs) become a good target. These attacks will be more difficult to defend because the botnet size continuously increases, and the attackers spare no pains in preparing the attacks. Under this new paradigm, current anti-DDoS systems may be fooled; the authors need a new survival strategy. They propose a novel DDoS mitigation scheme for CISs. They observe that CISs can continue their main businesses if most important clients can access the services. This motivates one to build a whitelist, called a VIP list in this paper, and the source addresses in the list are given higher priority when the CIS is under attack.