System for DDoS attack mitigation by discovering the attack vectors through statistical traffic analysis

被引:3
|
作者
Mirchev M.J. [1 ]
Mirtchev S.T. [1 ]
机构
[1] Faculty of Telecommunications, Technical University of Sofia, 8 Kl.Ohridski Blvd, Sofia
关键词
DDoS attack; Distributed denial-of-service; IP network security; Statistical analysis; Vector of attack;
D O I
10.1504/IJICS.2020.109479
中图分类号
学科分类号
摘要
DDoS attacks are becoming an increasing threat to the internet due to the easy availability of user-friendly attack tools. In meantime defending from such attacks is very difficult, because it is very hard to differentiate between the legitimate traffic and attack traffic and also maintain the attacked service still accessible while under attack. This paper describes a method for discovering the vector of a DDoS attack using statistical traffic analysis. The discussed methods are based on having a notification of the attack and making a statistical analysis of the attack traffic to find the vector and profiling a statistical baseline of normal traffic and discovering the abnormal traffic as a difference in the statistical parameters of TCP/IP packets in a given moment to the baseline and thus making a decision of the attack and its vector simultaneously. Copyright © 2020 Inderscience Enterprises Ltd.
引用
收藏
页码:309 / 321
页数:12
相关论文
共 50 条
  • [21] Analysis of Simulation of DDOS Attack in Cloud
    Karthik, S.
    Shah, J. J.
    2014 INTERNATIONAL CONFERENCE ON INFORMATION COMMUNICATION AND EMBEDDED SYSTEMS (ICICES), 2014,
  • [22] Detection and analysis types of DDoS attack
    Navruzov, Erkin
    Kabulov, Anvar
    2022 IEEE INTERNATIONAL IOT, ELECTRONICS AND MECHATRONICS CONFERENCE (IEMTRONICS), 2022, : 203 - 209
  • [23] DDoS Attack Detection and Mitigation Techniques in Cloud Computing Environment
    Devi, Kiruthika B. S.
    Subbulakshmi, T.
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INTELLIGENT SUSTAINABLE SYSTEMS (ICISS 2017), 2017, : 512 - 517
  • [24] DDoS Attack Detection and Mitigation at SDN Data Plane Layer
    Abdulkarem, Huda Saleh
    Dawod, Ammar
    2020 IEEE 2ND GLOBAL POWER, ENERGY AND COMMUNICATION CONFERENCE (IEEE GPECOM2020), 2020, : 322 - 326
  • [25] Distributed packet pairing for reflector based DDoS attack mitigation
    Al-Duwairi, Basheer
    Manimaran, G.
    COMPUTER COMMUNICATIONS, 2006, 29 (12) : 2269 - 2280
  • [26] FADM: DDoS Flooding Attack Detection and Mitigation System in Software-Defined Networking
    Hu, Dingwen
    Hong, Peilin
    Chen, Yixin
    GLOBECOM 2017 - 2017 IEEE GLOBAL COMMUNICATIONS CONFERENCE, 2017,
  • [27] Analyzing effective mitigation of DDoS attack with software defined networking
    Dayal, Neelam
    Srivastava, Shashank
    COMPUTERS & SECURITY, 2023, 130
  • [28] Mitigation of DDoS Attack Using Moving Target Defense in SDN
    Swami, Rochak
    Dave, Mayank
    Ranga, Virender
    WIRELESS PERSONAL COMMUNICATIONS, 2023, 131 (04) : 2429 - 2443
  • [29] Random flow network modeling and simulations for DDoS attack mitigation
    Kong, JJ
    Mirza, M
    Shu, J
    Yoedhana, C
    Gerla, M
    Lu, SW
    2003 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-5: NEW FRONTIERS IN TELECOMMUNICATIONS, 2003, : 487 - 491
  • [30] DDoS Attack Mitigation Based on Traffic Scheduling in Edge Computing- Enabled TWDM-PON
    Li, Yajie
    Zhao, Yingqi
    Li, Jun
    Yu, Xiaosong
    Zhao, Yongli
    Zhang, Jie
    IEEE ACCESS, 2021, 9 : 166566 - 166578