System for DDoS attack mitigation by discovering the attack vectors through statistical traffic analysis

被引:3
|
作者
Mirchev M.J. [1 ]
Mirtchev S.T. [1 ]
机构
[1] Faculty of Telecommunications, Technical University of Sofia, 8 Kl.Ohridski Blvd, Sofia
关键词
DDoS attack; Distributed denial-of-service; IP network security; Statistical analysis; Vector of attack;
D O I
10.1504/IJICS.2020.109479
中图分类号
学科分类号
摘要
DDoS attacks are becoming an increasing threat to the internet due to the easy availability of user-friendly attack tools. In meantime defending from such attacks is very difficult, because it is very hard to differentiate between the legitimate traffic and attack traffic and also maintain the attacked service still accessible while under attack. This paper describes a method for discovering the vector of a DDoS attack using statistical traffic analysis. The discussed methods are based on having a notification of the attack and making a statistical analysis of the attack traffic to find the vector and profiling a statistical baseline of normal traffic and discovering the abnormal traffic as a difference in the statistical parameters of TCP/IP packets in a given moment to the baseline and thus making a decision of the attack and its vector simultaneously. Copyright © 2020 Inderscience Enterprises Ltd.
引用
收藏
页码:309 / 321
页数:12
相关论文
共 50 条
  • [31] Prevention of DDoS Attack Through Trust Management System for VANET Environment
    Chouhan, Piyush
    Jain, Swapnil
    SECOND INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND COMMUNICATION TECHNOLOGIES, ICCNCT 2019, 2020, 44 : 424 - 435
  • [32] Mitigation of Controller induced DDoS Attack on Primary Server in High Traffic Scenarios of Software Defined Networks
    Sanjeetha, R.
    Prasanna, Akshar
    Kumar, Pradeep D.
    Kanavalli, Anita
    2018 IEEE INTERNATIONAL CONFERENCE ON ADVANCED NETWORKS AND TELECOMMUNICATIONS SYSTEMS (ANTS), 2018,
  • [33] Service separation assisted DDoS attack mitigation in cloud targets
    Kumar, Anmol
    Somani, Gaurav
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 73
  • [34] DDoS Attack Detection and Mitigation in SDN using Machine Learning
    Khashab, Fatima
    Moubarak, Joanna
    Feghali, Antoine
    Bassil, Carole
    PROCEEDINGS OF THE 2021 IEEE 7TH INTERNATIONAL CONFERENCE ON NETWORK SOFTWARIZATION (NETSOFT 2021): ACCELERATING NETWORK SOFTWARIZATION IN THE COGNITIVE AGE, 2021, : 395 - 401
  • [35] RMCARTAM For DDoS Attack Mitigation in SDN Using Machine Learning
    Revathi M.
    Ramalingam V.V.
    Amutha B.
    Computer Systems Science and Engineering, 2023, 45 (03): : 3023 - 3036
  • [36] Efficient SYN spoofing Detection and Mitigation Scheme for DDoS attack
    Kavisankar, L.
    Chellappan, C.
    Venkatesan, S.
    Sivasankar, P.
    2017 SECOND INTERNATIONAL CONFERENCE ON RECENT TRENDS AND CHALLENGES IN COMPUTATIONAL MODELS (ICRTCCM), 2017, : 269 - 274
  • [37] Mitigation of DDoS Attack Using Moving Target Defense in SDN
    Rochak Swami
    Mayank Dave
    Virender Ranga
    Wireless Personal Communications, 2023, 131 : 2429 - 2443
  • [38] DDoS Attack Detection Method and Mitigation Using Pattern of the Flow
    Sanmorino, Ahmad
    Yazid, Setiadi
    2013 INTERNATIONAL CONFERENCE OF INFORMATION AND COMMUNICATION TECHNOLOGY (ICOICT), 2013, : 12 - 16
  • [39] An on-line DDoS attack Traceback and Mitigation System based on network performance monitoring
    Su, Wei-Tsung
    Lin, Tzu-Chieh
    Wu, Chun-Yi
    Hsu, Jang-Pong
    Kuo, Yau-Hwang
    10TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY, VOLS I-III: INNOVATIONS TOWARD FUTURE NETWORKS AND SERVICES, 2008, : 1467 - +
  • [40] A Feature Analysis Based Identifying Scheme Using GBDT for DDoS with Multiple Attack Vectors
    Zhang, Jian
    Liang, Qidi
    Jiang, Rui
    Li, Xi
    APPLIED SCIENCES-BASEL, 2019, 9 (21):