{"id":"https://openalex.org/W2118878434","doi":"https://doi.org/10.1109/secpri.2004.1301320","title":"SIFF: a stateless internet flow filter to mitigate DDoS flooding attacks","display_name":"SIFF: a stateless internet flow filter to mitigate DDoS flooding attacks","publication_year":2004,"publication_date":"2004-06-10","ids":{"openalex":"https://openalex.org/W2118878434","doi":"https://doi.org/10.1109/secpri.2004.1301320","mag":"2118878434"},"language":"en","primary_location":{"id":"doi:10.1109/secpri.2004.1301320","is_oa":false,"landing_page_url":"https://doi.org/10.1109/secpri.2004.1301320","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Symposium on Security and Privacy, 2004. Proceedings. 2004","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://figshare.com/articles/journal_contribution/SIFF_A_Stateless_Internet_Flow_Filter_to_Mitigate_DDoS_Flooding_Attacks/6469304","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5014894508","display_name":"A. Yaar","orcid":null},"institutions":[{"id":"https://openalex.org/I170201317","display_name":"University of Pittsburgh","ror":"https://ror.org/01an3r305","country_code":"US","type":"education","lineage":["https://openalex.org/I170201317"]},{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"A. Yaar","raw_affiliation_strings":["Carnegie Mellon University, USA","Carneggie Mellon Univ., Pittsburgh, PA, USA"],"affiliations":[{"raw_affiliation_string":"Carnegie Mellon University, USA","institution_ids":["https://openalex.org/I74973139"]},{"raw_affiliation_string":"Carneggie Mellon Univ., Pittsburgh, PA, USA","institution_ids":["https://openalex.org/I170201317"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056518136","display_name":"Adrian Perrig","orcid":"https://orcid.org/0000-0002-5280-5412"},"institutions":[{"id":"https://openalex.org/I170201317","display_name":"University of Pittsburgh","ror":"https://ror.org/01an3r305","country_code":"US","type":"education","lineage":["https://openalex.org/I170201317"]},{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"A. Perrig","raw_affiliation_strings":["Carnegie Mellon University, USA","Carneggie Mellon Univ., Pittsburgh, PA, USA"],"affiliations":[{"raw_affiliation_string":"Carnegie Mellon University, USA","institution_ids":["https://openalex.org/I74973139"]},{"raw_affiliation_string":"Carneggie Mellon Univ., Pittsburgh, PA, USA","institution_ids":["https://openalex.org/I170201317"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5019426968","display_name":"Dawn Song","orcid":"https://orcid.org/0000-0001-9745-6802"},"institutions":[{"id":"https://openalex.org/I170201317","display_name":"University of Pittsburgh","ror":"https://ror.org/01an3r305","country_code":"US","type":"education","lineage":["https://openalex.org/I170201317"]},{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"D. Song","raw_affiliation_strings":["Carnegie Mellon University, USA","Carneggie Mellon Univ., Pittsburgh, PA, USA"],"affiliations":[{"raw_affiliation_string":"Carnegie Mellon University, USA","institution_ids":["https://openalex.org/I74973139"]},{"raw_affiliation_string":"Carneggie Mellon Univ., Pittsburgh, PA, USA","institution_ids":["https://openalex.org/I170201317"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5014894508"],"corresponding_institution_ids":["https://openalex.org/I170201317","https://openalex.org/I74973139"],"apc_list":null,"apc_paid":null,"fwci":21.6689,"has_fulltext":false,"cited_by_count":371,"citation_normalized_percentile":{"value":0.99459159,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"130","last_page":"143"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10138","display_name":"Network Traffic and Congestion Control","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/stateless-protocol","display_name":"Stateless protocol","score":0.7439579367637634},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.7033941149711609},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7021350860595703},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6302483081817627},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.5877231359481812},{"id":"https://openalex.org/keywords/flooding","display_name":"Flooding (psychology)","score":0.5074419379234314},{"id":"https://openalex.org/keywords/denial-of-service-attack","display_name":"Denial-of-service attack","score":0.4976525604724884},{"id":"https://openalex.org/keywords/network-packet","display_name":"Network packet","score":0.4895261228084564},{"id":"https://openalex.org/keywords/server","display_name":"Server","score":0.47507113218307495},{"id":"https://openalex.org/keywords/botnet","display_name":"Botnet","score":0.46532341837882996},{"id":"https://openalex.org/keywords/application-layer-ddos-attack","display_name":"Application layer DDoS attack","score":0.45976585149765015},{"id":"https://openalex.org/keywords/overlay-network","display_name":"Overlay network","score":0.4229472875595093},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.1153099536895752}],"concepts":[{"id":"https://openalex.org/C103613024","wikidata":"https://www.wikidata.org/wiki/Q230924","display_name":"Stateless protocol","level":3,"score":0.7439579367637634},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.7033941149711609},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7021350860595703},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6302483081817627},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.5877231359481812},{"id":"https://openalex.org/C186594467","wikidata":"https://www.wikidata.org/wiki/Q1429176","display_name":"Flooding (psychology)","level":2,"score":0.5074419379234314},{"id":"https://openalex.org/C38822068","wikidata":"https://www.wikidata.org/wiki/Q131406","display_name":"Denial-of-service attack","level":3,"score":0.4976525604724884},{"id":"https://openalex.org/C158379750","wikidata":"https://www.wikidata.org/wiki/Q214111","display_name":"Network packet","level":2,"score":0.4895261228084564},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.47507113218307495},{"id":"https://openalex.org/C22735295","wikidata":"https://www.wikidata.org/wiki/Q317671","display_name":"Botnet","level":3,"score":0.46532341837882996},{"id":"https://openalex.org/C120865594","wikidata":"https://www.wikidata.org/wiki/Q131406","display_name":"Application layer DDoS attack","level":4,"score":0.45976585149765015},{"id":"https://openalex.org/C169851745","wikidata":"https://www.wikidata.org/wiki/Q1331985","display_name":"Overlay network","level":3,"score":0.4229472875595093},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.1153099536895752},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0},{"id":"https://openalex.org/C542102704","wikidata":"https://www.wikidata.org/wiki/Q183257","display_name":"Psychotherapist","level":1,"score":0.0}],"mesh":[],"locations_count":6,"locations":[{"id":"doi:10.1109/secpri.2004.1301320","is_oa":false,"landing_page_url":"https://doi.org/10.1109/secpri.2004.1301320","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Symposium on Security and Privacy, 2004. Proceedings. 2004","raw_type":"proceedings-article"},{"id":"pmh:oai:repository.cmu.edu:ece-1035","is_oa":false,"landing_page_url":"http://repository.cmu.edu/cgi/viewcontent.cgi?article=1035&context=ece","pdf_url":null,"source":{"id":"https://openalex.org/S4306400668","display_name":"Research Showcase @ Carnegie Mellon University (Carnegie Mellon University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I74973139","host_organization_name":"Carnegie Mellon University","host_organization_lineage":["https://openalex.org/I74973139"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Department of Electrical and Computer Engineering","raw_type":"text"},{"id":"pmh:doi:10.1184/r1/6469304","is_oa":false,"landing_page_url":null,"pdf_url":null,"source":{"id":"https://openalex.org/S4406922384","display_name":"Open MIND","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Journal contribution"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.6.3184","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.6.3184","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://www.ece.cmu.edu/~adrian/projects/siff.ps","raw_type":"text"},{"id":"pmh:oai:figshare.com:article/6469304","is_oa":true,"landing_page_url":"https://figshare.com/articles/journal_contribution/SIFF_A_Stateless_Internet_Flow_Filter_to_Mitigate_DDoS_Flooding_Attacks/6469304","pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Text"},{"id":"doi:10.1184/r1/6469304.v1","is_oa":true,"landing_page_url":"https://doi.org/10.1184/r1/6469304.v1","pdf_url":null,"source":{"id":"https://openalex.org/S7407050927","display_name":"KiltHub Repository","issn_l":null,"issn":[],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article-journal"}],"best_oa_location":{"id":"pmh:oai:figshare.com:article/6469304","is_oa":true,"landing_page_url":"https://figshare.com/articles/journal_contribution/SIFF_A_Stateless_Internet_Flow_Filter_to_Mitigate_DDoS_Flooding_Attacks/6469304","pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Text"},"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","score":0.6200000047683716,"id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":64,"referenced_works":["https://openalex.org/W206164581","https://openalex.org/W1500053238","https://openalex.org/W1520068592","https://openalex.org/W1563061804","https://openalex.org/W1577581800","https://openalex.org/W1578138711","https://openalex.org/W1584514021","https://openalex.org/W1590810061","https://openalex.org/W1593334954","https://openalex.org/W1660551007","https://openalex.org/W1798223019","https://openalex.org/W1867219652","https://openalex.org/W1972521387","https://openalex.org/W1985382559","https://openalex.org/W1987045229","https://openalex.org/W2001619556","https://openalex.org/W2070024382","https://openalex.org/W2081357650","https://openalex.org/W2084830206","https://openalex.org/W2097740006","https://openalex.org/W2098334439","https://openalex.org/W2106655090","https://openalex.org/W2117222554","https://openalex.org/W2117708768","https://openalex.org/W2118172426","https://openalex.org/W2120626294","https://openalex.org/W2125513999","https://openalex.org/W2126847554","https://openalex.org/W2129453085","https://openalex.org/W2130327661","https://openalex.org/W2133087198","https://openalex.org/W2135708813","https://openalex.org/W2136262545","https://openalex.org/W2136400262","https://openalex.org/W2139153904","https://openalex.org/W2143629476","https://openalex.org/W2145080794","https://openalex.org/W2150228605","https://openalex.org/W2152965521","https://openalex.org/W2154178154","https://openalex.org/W2157157130","https://openalex.org/W2162133150","https://openalex.org/W2164686665","https://openalex.org/W2169246522","https://openalex.org/W2170771030","https://openalex.org/W3023777934","https://openalex.org/W3123395457","https://openalex.org/W4248384603","https://openalex.org/W4300930169","https://openalex.org/W6608458714","https://openalex.org/W6630999382","https://openalex.org/W6634541807","https://openalex.org/W6635362427","https://openalex.org/W6637147931","https://openalex.org/W6638222144","https://openalex.org/W6639156192","https://openalex.org/W6647005722","https://openalex.org/W6671431989","https://openalex.org/W6677670343","https://openalex.org/W6680155214","https://openalex.org/W6681393172","https://openalex.org/W6682144364","https://openalex.org/W6684773649","https://openalex.org/W6776814112"],"related_works":["https://openalex.org/W2783792841","https://openalex.org/W3166165364","https://openalex.org/W2598265749","https://openalex.org/W2161787479","https://openalex.org/W2560748881","https://openalex.org/W2181380068","https://openalex.org/W2600242272","https://openalex.org/W4285609096","https://openalex.org/W2419539551","https://openalex.org/W2066070215"],"abstract_inverted_index":{"One":[0],"of":[1,5,11,61,96,170],"the":[2,6,9,23,59,97,137,140,168],"fundamental":[3],"limitations":[4],"Internet":[7,78],"is":[8,155],"inability":[10],"a":[12,76,126],"packet":[13],"flow":[14],"recipient":[15,115],"to":[16,35,65,85,114,150,157],"halt":[17],"disruptive":[18],"flows":[19,89],"before":[20],"they":[21],"consume":[22],"recipient's":[24],"network":[25,105],"link":[26],"resources.":[27],"Critical":[28],"infrastructures":[29],"and":[30,117,133,142,160],"businesses":[31],"alike":[32],"are":[33,123,131],"vulnerable":[34],"DoS":[36],"attacks":[37],"or":[38,58],"flash-crowds":[39],"that":[40],"can":[41,143],"incapacitate":[42],"their":[43],"networks":[44],"with":[45],"traffic":[46,106],"floods.":[47],"Unfortunately,":[48],"current":[49],"mechanisms":[50],"require":[51],"per-flow":[52],"state":[53],"at":[54],"routers,":[55],"ISP":[56],"collaboration,":[57],"deployment":[60],"an":[62,83,151],"overlay":[63],"infrastructure":[64],"defend":[66],"against":[67],"these":[68],"events.":[69],"In":[70],"this":[71],"paper,":[72],"we":[73],"present":[74],"SIFF,":[75],"Stateless":[77],"Flow":[79],"Filter,":[80],"which":[81],"allows":[82],"end-host":[84],"selectively":[86],"stop":[87],"individual":[88],"from":[90],"reaching":[91],"its":[92],"network,":[93,141],"without":[94],"any":[95],"common":[98],"assumptions":[99],"listed":[100],"above.":[101],"We":[102],"divide":[103],"all":[104],"into":[107],"two":[108],"classes,":[109],"privileged":[110],"(prioritized":[111],"packets":[112],"subject":[113],"control)":[116],"unprivileged":[118],"(legacy":[119],"traffic).":[120],"Privileged":[121],"channels":[122],"established":[124],"through":[125],"capability":[127],"exchange":[128],"handshake.":[129],"Capabilities":[130],"dynamic":[132],"verified":[134],"statelessly":[135],"by":[136,146],"routers":[138],"in":[139],"be":[144],"revoked":[145],"quenching":[147],"update":[148],"messages":[149],"offending":[152],"host.":[153],"SIFF":[154],"transparent":[156],"legacy":[158],"clients":[159],"servers,":[161],"but":[162],"only":[163],"updated":[164],"hosts":[165],"will":[166],"enjoy":[167],"benefits":[169],"it.":[171]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":5},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":6},{"year":2021,"cited_by_count":10},{"year":2020,"cited_by_count":6},{"year":2019,"cited_by_count":12},{"year":2018,"cited_by_count":19},{"year":2017,"cited_by_count":10},{"year":2016,"cited_by_count":15},{"year":2015,"cited_by_count":14},{"year":2014,"cited_by_count":21},{"year":2013,"cited_by_count":24},{"year":2012,"cited_by_count":23}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
