ARTEMIS: Neutralizing BGP Hijacking within a Minute
Pavlos Sermpezis, Vasileios Kotronis, Petros Gigis, Xenofontas, Dimitropoulos, Danilo Cicalese, Alistair King, and Alberto Dainotti

TL;DR
ARTEMIS is a real-time BGP hijacking detection and mitigation system that enables network operators to neutralize hijacks within a minute, improving speed, accuracy, and privacy over existing methods.
Contribution
The paper introduces ARTEMIS, a novel system that provides fast, accurate, and privacy-preserving BGP hijacking detection and mitigation directly by network operators.
Findings
Hijacks can be neutralized within a minute.
ARTEMIS outperforms existing detection methods in speed and accuracy.
The system leverages real-time BGP monitoring for effective defense.
Abstract
BGP prefix hijacking is a critical threat to Internet organizations and users. Despite the availability of several defense approaches (ranging from RPKI to popular third-party services), none of them solves the problem adequately in practice. In fact, they suffer from: (i) lack of detection comprehensiveness, allowing sophisticated attackers to evade detection, (ii) limited accuracy, especially in the case of third-party detection, (iii) delayed verification and mitigation of incidents, reaching up to days, and (iv) lack of privacy and of flexibility in post-hijack counteractions, on the side of network operators. In this work, we propose ARTEMIS (Automatic and Real-Time dEtection and MItigation System), a defense approach (a) based on accurate and fast detection operated by the AS itself, leveraging the pervasiveness of publicly available BGP monitoring services and their recent shift…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
