A cloud tracing and filtering framework for defensing against denial of service attacks

被引:0
|
作者
Lin F. [1 ]
Zeng W. [2 ]
Jiang Y. [3 ]
机构
[1] School of Software, Xiamen University
[2] Fujian Key Laboratory of the Brain-Like Intelligent Systems, Xiamen University
[3] Department of Computer Science, Xiamen University
关键词
Cloud computing; Denial of service attacks; Network security; SaaS;
D O I
10.4156/jdcta.vol4.issue9.26
中图分类号
学科分类号
摘要
Cloud computing is Internet-based computing, whereby shared resources, software, and nformation are provided to computers and other devices on demand, like the electricity grid. One of the most serious threats to cloud computing itself comes from Denial of Service attacks, especially HTTP or XML-Based Denial of Service attacks. These types of attacks are simple and easy to implement by the attacker, but to security experts they are twice as difficult to stop. In this paper, we introduced a security service called Cloud Tracing & Filtering (CTF), which is like a service broker within a SOA model, and a back propagation neutral network called Cloud Shield, which was trained to detect and filter DoS attack traffic. And we also presented a solution to detect and trace through CTF to find the source of those attacks. The experimental results show that CTF is able to detect and filter most of the attack messages and to identify the source of the attack within a short period of time.
引用
收藏
页码:212 / 224
页数:12
相关论文
共 50 条
  • [41] Defending against denial-of-service attacks with puzzle auctions
    Wang, XF
    Reiter, MK
    2003 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2003, : 78 - 92
  • [42] The protection of QoS for multimedia transmission against denial of service attacks
    Luo, HL
    Shyu, ML
    ISM 2005: SEVENTH IEEE INTERNATIONAL SYMPOSIUM ON MULTIMEDIA, PROCEEDINGS, 2005, : 695 - 700
  • [43] Characterization of defense mechanisms against distributed denial of service attacks
    Chen, LC
    Longstaff, TA
    Carley, KM
    COMPUTERS & SECURITY, 2004, 23 (08) : 665 - 678
  • [44] A Cooperative Mechanism to Defense Against Distributed Denial of Service Attacks
    Beitollahi, Hakem
    Deconinck, Geert
    TRUSTCOM 2011: 2011 INTERNATIONAL JOINT CONFERENCE OF IEEE TRUSTCOM-11/IEEE ICESS-11/FCST-11, 2011, : 11 - 20
  • [45] PREVIR: Fortifying Vehicular Networks Against Denial of Service Attacks
    Verma, Amandeep
    Saha, Rahul
    Kumar, Gulshan
    Conti, Mauro
    Kim, Tai-Hoon
    IEEE ACCESS, 2024, 12 : 48301 - 48320
  • [46] An overlay protection layer against denial-of-service attacks
    Beitollahi, Hakem
    Deconinck, Geert
    2008 IEEE INTERNATIONAL SYMPOSIUM ON PARALLEL & DISTRIBUTED PROCESSING, VOLS 1-8, 2008, : 328 - +
  • [47] A measure of resilience against denial of service attacks in computer networks
    Sharafat, AR
    Fallah, MS
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2002, 17 (4-5): : 259 - 267
  • [49] Protection system against overload and distributed Denial of Service attacks
    Toth, Ervin
    Hornak, Zoltan
    Toth, Gergely
    DEPCOS - RELCOMEX 2008: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON DEPENDABILITY OF COMPUTER SYSTEMS, 2008, : 195 - +
  • [50] Distributed defense against distributed denial-of-service attacks
    Shi, W
    Xiang, Y
    Zhou, WL
    DISTRIBUTED AND PARALLEL COMPUTING, 2005, 3719 : 357 - 362