{"id":"https://openalex.org/W4417386366","doi":"https://doi.org/10.3390/fi17120580","title":"Enhancing Microservice Security Through Adaptive Moving Target Defense Policies to Mitigate DDoS Attacks in Cloud-Native Environments","display_name":"Enhancing Microservice Security Through Adaptive Moving Target Defense Policies to Mitigate DDoS Attacks in Cloud-Native Environments","publication_year":2025,"publication_date":"2025-12-16","ids":{"openalex":"https://openalex.org/W4417386366","doi":"https://doi.org/10.3390/fi17120580"},"language":"en","primary_location":{"id":"doi:10.3390/fi17120580","is_oa":true,"landing_page_url":"https://doi.org/10.3390/fi17120580","pdf_url":"https://www.mdpi.com/1999-5903/17/12/580/pdf?version=1765894702","source":{"id":"https://openalex.org/S34838331","display_name":"Future Internet","issn_l":"1999-5903","issn":["1999-5903"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Future Internet","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/1999-5903/17/12/580/pdf?version=1765894702","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5077862885","display_name":"Yuyang Zhou","orcid":"https://orcid.org/0000-0001-8626-0468"},"institutions":[{"id":"https://openalex.org/I76569877","display_name":"Southeast University","ror":"https://ror.org/04ct4d772","country_code":"CN","type":"education","lineage":["https://openalex.org/I76569877"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuyang Zhou","raw_affiliation_strings":["School of Cyber Science and Engineering, Southeast University, Nanjing 211189, China"],"raw_orcid":"https://orcid.org/0000-0001-8626-0468","affiliations":[{"raw_affiliation_string":"School of Cyber Science and Engineering, Southeast University, Nanjing 211189, China","institution_ids":["https://openalex.org/I76569877"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010163833","display_name":"Guang He Cheng","orcid":"https://orcid.org/0000-0002-7504-8688"},"institutions":[{"id":"https://openalex.org/I76569877","display_name":"Southeast University","ror":"https://ror.org/04ct4d772","country_code":"CN","type":"education","lineage":["https://openalex.org/I76569877"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Guang Cheng","raw_affiliation_strings":["School of Cyber Science and Engineering, Southeast University, Nanjing 211189, China"],"raw_orcid":"https://orcid.org/0000-0002-7504-8688","affiliations":[{"raw_affiliation_string":"School of Cyber Science and Engineering, Southeast University, Nanjing 211189, China","institution_ids":["https://openalex.org/I76569877"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5120820198","display_name":"Kang Du","orcid":"https://orcid.org/0009-0003-3601-1641"},"institutions":[{"id":"https://openalex.org/I76569877","display_name":"Southeast University","ror":"https://ror.org/04ct4d772","country_code":"CN","type":"education","lineage":["https://openalex.org/I76569877"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kang Du","raw_affiliation_strings":["School of Cyber Science and Engineering, Southeast University, Nanjing 211189, China"],"raw_orcid":"https://orcid.org/0009-0003-3601-1641","affiliations":[{"raw_affiliation_string":"School of Cyber Science and Engineering, Southeast University, Nanjing 211189, China","institution_ids":["https://openalex.org/I76569877"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5010163833"],"corresponding_institution_ids":["https://openalex.org/I76569877"],"apc_list":{"value":1400,"currency":"CHF","value_usd":1515},"apc_paid":{"value":1400,"currency":"CHF","value_usd":1515},"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.41613156,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"17","issue":"12","first_page":"580","last_page":"580"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.7461000084877014,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.7461000084877014,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10714","display_name":"Software-Defined Networks and 5G","score":0.14229999482631683,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.04270000010728836,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/denial-of-service-attack","display_name":"Denial-of-service attack","score":0.7657999992370605},{"id":"https://openalex.org/keywords/scalability","display_name":"Scalability","score":0.6568999886512756},{"id":"https://openalex.org/keywords/resilience","display_name":"Resilience (materials science)","score":0.6266000270843506},{"id":"https://openalex.org/keywords/markov-decision-process","display_name":"Markov decision process","score":0.59579998254776},{"id":"https://openalex.org/keywords/reinforcement-learning","display_name":"Reinforcement learning","score":0.4853000044822693},{"id":"https://openalex.org/keywords/quality-of-service","display_name":"Quality of service","score":0.4733999967575073},{"id":"https://openalex.org/keywords/latency","display_name":"Latency (audio)","score":0.4546999931335449},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.44040000438690186}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.9043999910354614},{"id":"https://openalex.org/C38822068","wikidata":"https://www.wikidata.org/wiki/Q131406","display_name":"Denial-of-service attack","level":3,"score":0.7657999992370605},{"id":"https://openalex.org/C48044578","wikidata":"https://www.wikidata.org/wiki/Q727490","display_name":"Scalability","level":2,"score":0.6568999886512756},{"id":"https://openalex.org/C2779585090","wikidata":"https://www.wikidata.org/wiki/Q3457762","display_name":"Resilience (materials science)","level":2,"score":0.6266000270843506},{"id":"https://openalex.org/C106189395","wikidata":"https://www.wikidata.org/wiki/Q176789","display_name":"Markov decision process","level":3,"score":0.59579998254776},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5299999713897705},{"id":"https://openalex.org/C97541855","wikidata":"https://www.wikidata.org/wiki/Q830687","display_name":"Reinforcement learning","level":2,"score":0.4853000044822693},{"id":"https://openalex.org/C5119721","wikidata":"https://www.wikidata.org/wiki/Q220501","display_name":"Quality of service","level":2,"score":0.4733999967575073},{"id":"https://openalex.org/C82876162","wikidata":"https://www.wikidata.org/wiki/Q17096504","display_name":"Latency (audio)","level":2,"score":0.4546999931335449},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.44040000438690186},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.4180000126361847},{"id":"https://openalex.org/C185874996","wikidata":"https://www.wikidata.org/wiki/Q269699","display_name":"Interdependence","level":2,"score":0.4018000066280365},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.40070000290870667},{"id":"https://openalex.org/C2780378061","wikidata":"https://www.wikidata.org/wiki/Q25351891","display_name":"Service (business)","level":2,"score":0.34950000047683716},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.337799996137619},{"id":"https://openalex.org/C159886148","wikidata":"https://www.wikidata.org/wiki/Q176645","display_name":"Markov process","level":2,"score":0.30869999527931213},{"id":"https://openalex.org/C206345919","wikidata":"https://www.wikidata.org/wiki/Q20380951","display_name":"Resource (disambiguation)","level":2,"score":0.3019999861717224},{"id":"https://openalex.org/C154908896","wikidata":"https://www.wikidata.org/wiki/Q2167404","display_name":"Security policy","level":2,"score":0.28459998965263367},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.2842999994754791},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.2791999876499176},{"id":"https://openalex.org/C46637626","wikidata":"https://www.wikidata.org/wiki/Q6693015","display_name":"Low latency (capital markets)","level":2,"score":0.27790001034736633},{"id":"https://openalex.org/C2780609101","wikidata":"https://www.wikidata.org/wiki/Q17156588","display_name":"Resource management (computing)","level":2,"score":0.26589998602867126},{"id":"https://openalex.org/C2778505942","wikidata":"https://www.wikidata.org/wiki/Q18344624","display_name":"Microservices","level":3,"score":0.25870001316070557}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.3390/fi17120580","is_oa":true,"landing_page_url":"https://doi.org/10.3390/fi17120580","pdf_url":"https://www.mdpi.com/1999-5903/17/12/580/pdf?version=1765894702","source":{"id":"https://openalex.org/S34838331","display_name":"Future Internet","issn_l":"1999-5903","issn":["1999-5903"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Future Internet","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:b952133ae6ba4b0fbf3f9cd10e608dfb","is_oa":true,"landing_page_url":"https://doaj.org/article/b952133ae6ba4b0fbf3f9cd10e608dfb","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Future Internet, Vol 17, Iss 12, p 580 (2025)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.3390/fi17120580","is_oa":true,"landing_page_url":"https://doi.org/10.3390/fi17120580","pdf_url":"https://www.mdpi.com/1999-5903/17/12/580/pdf?version=1765894702","source":{"id":"https://openalex.org/S34838331","display_name":"Future Internet","issn_l":"1999-5903","issn":["1999-5903"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Future Internet","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1052238065","display_name":null,"funder_award_id":"2024T170143","funder_id":"https://openalex.org/F4320321543","funder_display_name":"China Postdoctoral Science Foundation"},{"id":"https://openalex.org/G1793682622","display_name":null,"funder_award_id":"62072100","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G498661955","display_name":null,"funder_award_id":"2022M710677","funder_id":"https://openalex.org/F4320321543","funder_display_name":"China Postdoctoral Science Foundation"},{"id":"https://openalex.org/G6188450572","display_name":null,"funder_award_id":"62202097","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321543","display_name":"China Postdoctoral Science Foundation","ror":"https://ror.org/0426zh255"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4417386366.pdf","grobid_xml":"https://content.openalex.org/works/W4417386366.grobid-xml"},"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Cloud-native":[0],"microservice":[1],"architectures":[2],"offer":[3],"scalability":[4],"and":[5,11,35,39,46,63,121,136,169],"resilience":[6],"but":[7],"introduce":[8],"complex":[9],"interdependencies":[10],"new":[12],"attack":[13],"surfaces,":[14],"making":[15],"them":[16],"vulnerable":[17],"to":[18,117,140,156],"resource-exhaustion":[19,173],"Distributed":[20],"Denial-of-Service":[21],"(DDoS)":[22],"attacks.":[23],"These":[24],"attacks":[25,160,175],"propagate":[26],"along":[27],"service":[28,119,152],"call":[29],"chains,":[30],"closely":[31],"mimic":[32],"legitimate":[33],"traffic,":[34],"evade":[36],"traditional":[37],"detection":[38],"mitigation":[40],"techniques,":[41],"resulting":[42],"in":[43,176],"cascading":[44],"bottlenecks":[45],"degraded":[47],"Quality":[48],"of":[49],"Service":[50],"(QoS).":[51],"Existing":[52],"Moving":[53],"Target":[54],"Defense":[55],"(MTD)":[56],"approaches":[57],"lack":[58],"adaptive,":[59],"cost-aware":[60],"policy":[61],"guidance":[62],"are":[64],"often":[65],"ineffective":[66],"against":[67,172],"spatiotemporally":[68],"adaptive":[69,80],"adversaries.":[70],"To":[71],"address":[72],"these":[73],"challenges,":[74],"this":[75],"paper":[76],"proposes":[77],"ScaleShield,":[78],"an":[79],"MTD":[81],"framework":[82],"powered":[83],"by":[84,154],"Deep":[85,114],"Reinforcement":[86],"Learning":[87],"(DRL)":[88],"that":[89,128],"learns":[90],"coordinated,":[91],"attack-aware":[92],"defense":[93,99,133],"policies":[94],"for":[95],"microservices.":[96],"ScaleShield":[97,129],"formulates":[98],"as":[100],"a":[101,111],"Markov":[102],"Decision":[103],"Process":[104],"(MDP)":[105],"over":[106,163],"multi-dimensional":[107],"discrete":[108],"actions,":[109],"leveraging":[110],"Multi-Dimensional":[112],"Double":[113],"Q-Network":[115],"(MD3QN)":[116],"optimize":[118],"availability":[120],"minimize":[122],"operational":[123],"overhead.":[124],"Experimental":[125],"results":[126],"demonstrate":[127],"achieves":[130],"near":[131],"100%":[132],"success":[134],"rates":[135],"reduces":[137],"compromised":[138],"nodes":[139],"zero":[141],"within":[142],"approximately":[143],"5":[144],"steps,":[145],"significantly":[146],"outperforming":[147],"state-of-the-art":[148],"baselines.":[149],"It":[150],"lowers":[151],"latency":[153],"up":[155],"72%":[157],"under":[158],"dynamic":[159],"while":[161],"maintaining":[162],"94%":[164],"resource":[165],"efficiency,":[166],"providing":[167],"robust":[168],"cost-effective":[170],"protection":[171],"DDoS":[174],"cloud-native":[177],"environments.":[178]},"counts_by_year":[],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-12-16T00:00:00"}
