This paper proposes a new technique designed to prevent and detect address resolution protocol (ARP) spoofing attacks in general, and specifically Man-in-the-Middle (MitM) attacks, within the context of cloud computing. The solution focuses on establishing appropriate flow filtering rules based on parameters such as 'time feature' and internet control message protocol '(ICMP) protocol'. The tests were conducted using the Openstack platform. One of the key benefits of this proposed approach is the improved performance in effectively detecting a significant number of malicious packets. We implemented this solution on the Openstack platform and conducted evaluations to demonstrate its efficacy. The results confirm that our method achieves superior performance in detecting MitM attacks, with a packet detection ratio (PDR) of 60.4%. Moving forward, this work will contribute to protecting cloud environments from a large number of MitM attacks.
Copyrights © 2025