TY - JOUR
T1 - Enhancing public cloud resilience: an analytical review of detection and mitigation strategies against economic denial of sustainability attacks
AU - Sahar Saeed, Zubaidi Maytham
AU - Zainal, Anazida Binti
AU - Ghaleb, Fuad A.
AU - Al-rimy, Bander Ali Saleh
PY - 2025/7/22
Y1 - 2025/7/22
N2 - Cloud computing (CC) delivers computing resources as utilities, akin to services like electricity or water. However, security concerns—particularly Distributed Denial of Service (DDoS) and its economically targeted variant, Economic Denial of Sustainability (EDoS)—pose significant threats to its adoption. EDoS attacks exploit the pay-per-use and auto-scaling features of CC platforms to incur financial damage by triggering unnecessary resource consumption. While existing studies have proposed various countermeasures, comprehensive, comparative analysis remains limited. This review systematically examines 69 key articles addressing EDoS-specific or joint DDoS–EDoS threats. Beyond merely cataloguing these methods, this review provides a novel analytical synthesis by categorizing defense strategies into detection, prevention, mitigation, and hybrid models, and critically evaluating them against factors such as scalability, computational overhead, and false-positive rates. Importantly, this study introduces a service-model-aware framework, distinguishing which solutions are most effective for Infrastructure as a Service (IaaS) versus Software as a Service (SaaS) environments. By mapping techniques to operational contexts, the review reveals methodological gaps, highlights practical deployment challenges, and proposes priorities for future research and cloud-specific security design. Articles Highlights: • Provides a systematic review of EDoS attacks in cloud computing to understand current issues and limitations. • Classifies EDoS defences into four strategic categories to guide future research on key gaps. • Suggests future EDoS research focusing on AI, blockchain, and economic impacts to enhance defence effectiveness.
AB - Cloud computing (CC) delivers computing resources as utilities, akin to services like electricity or water. However, security concerns—particularly Distributed Denial of Service (DDoS) and its economically targeted variant, Economic Denial of Sustainability (EDoS)—pose significant threats to its adoption. EDoS attacks exploit the pay-per-use and auto-scaling features of CC platforms to incur financial damage by triggering unnecessary resource consumption. While existing studies have proposed various countermeasures, comprehensive, comparative analysis remains limited. This review systematically examines 69 key articles addressing EDoS-specific or joint DDoS–EDoS threats. Beyond merely cataloguing these methods, this review provides a novel analytical synthesis by categorizing defense strategies into detection, prevention, mitigation, and hybrid models, and critically evaluating them against factors such as scalability, computational overhead, and false-positive rates. Importantly, this study introduces a service-model-aware framework, distinguishing which solutions are most effective for Infrastructure as a Service (IaaS) versus Software as a Service (SaaS) environments. By mapping techniques to operational contexts, the review reveals methodological gaps, highlights practical deployment challenges, and proposes priorities for future research and cloud-specific security design. Articles Highlights: • Provides a systematic review of EDoS attacks in cloud computing to understand current issues and limitations. • Classifies EDoS defences into four strategic categories to guide future research on key gaps. • Suggests future EDoS research focusing on AI, blockchain, and economic impacts to enhance defence effectiveness.
UR - https://www.open-access.bcu.ac.uk/16582/
U2 - 10.1007/s43926-025-00183-9
DO - 10.1007/s43926-025-00183-9
M3 - Article
SN - 2730-7239
VL - 5
JO - Discover Internet of Things
JF - Discover Internet of Things
IS - 1
ER -