Detecting and mitigating DDoS attacks with moving target defense approach based on automated flow classification in SDN networks

被引:6
|
作者
Ribeiro, Marcos Aurelio [1 ]
Fonseca, Mauro Sergio Pereira [2 ]
de Santi, Juliana [3 ]
机构
[1] Univ Tecnol Fed Parana, Grad Program Appl Comp, Curitiba, Brazil
[2] Univ Tecnol Fed Parana, Grad Program Elect & Comp Engn, Curitiba, Brazil
[3] Univ Tecnol Fed Parana, Acad Dept Informat, Curitiba, Brazil
关键词
DDoS; Moving target defense; SDN; Machine learning; Cyber security;
D O I
10.1016/j.cose.2023.103462
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Distributed Denial of Service (DDoS) coordinates synchronized attacks on systems on the Internet using a set of infected hosts (bots). Bots are programmed to attack a determined target by firing a lot of synchronized requests, causing slowness or unavailability of the service. This type of attack has recently grown in magnitude, diversity, and economic cost. Thus, this paper presents a DDoS detection and mitigation architecture based on Software Defined Networking (SDN). It considers the Moving Target Defense (MTD) approach, redirecting malicious floods to expendable low-capacity servers to protect the main server while discouraging the attacker. The redirecting decision is based on a sensor, that employs Machine Learning (ML) algorithms for flow classification. When malicious flows are detected, the sensor notifies the SDN controller to include them in the malicious hosts lists and to realize the redirection. The validation and evaluation of the proposed architecture are conducted by simulation. Results considering different classification models (probabilistic, linear model, neural networks, and trees) and attack types indicate that the proposed architecture is efficient in detecting and mitigating DDoS attacks in approximately 3 seconds.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Mitigating Crossfire Attacks using SDN-based Moving Target Defense
    Aydeger, Abdullah
    Saputro, Nico
    Akkaya, Kemal
    Rahman, Mohammad
    [J]. 2016 IEEE 41ST CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN), 2016, : 627 - 630
  • [2] Strategies for detecting and mitigating DDoS attacks in SDN: A survey
    Joelle, Misenga Mumpela
    Park, Young-Hoon
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2018, 35 (06) : 5913 - 5925
  • [3] Countering crossfire DDoS attacks through moving target defense in SDN networks using OpenFlow traffic modification
    Hyder, Muhammad Faraz
    Fatima, Tasbiha
    Khan, Shariq Mahmood
    Arshad, Saadia
    [J]. TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2023,
  • [4] Defending Blind DDoS Attack on SDN Based on Moving Target Defense
    Ma, Duohe
    Xu, Zhen
    Lin, Dongdai
    [J]. INTERNATIONAL CONFERENCE ON SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, SECURECOMM 2014, PT I, 2015, 152 : 463 - 480
  • [5] SDN/NFV-Based Moving Target DDoS Defense Mechanism
    Liu, Chien-Chang
    Huang, Bo-Sheng
    Tseng, Chia-Wei
    Yang, Yao-Tsung
    Chou, Li-Der
    [J]. RECENT TRENDS IN DATA SCIENCE AND SOFT COMPUTING, IRICT 2018, 2019, 843 : 548 - 556
  • [6] Detecting and mitigating DHCP attacks in OpenFlow-based SDN networks: a comprehensive approach
    Aldaoud, Manar
    Al-Abri, Dawood
    Al Maashri, Ahmed
    Kausar, Firdous
    [J]. JOURNAL OF COMPUTER VIROLOGY AND HACKING TECHNIQUES, 2023, 19 (04) : 597 - 614
  • [7] Detecting and mitigating DHCP attacks in OpenFlow-based SDN networks: a comprehensive approach
    Manar Aldaoud
    Dawood Al-Abri
    Ahmed Al Maashri
    Firdous Kausar
    [J]. Journal of Computer Virology and Hacking Techniques, 2023, 19 : 597 - 614
  • [8] A Moving Target Defense Approach to Mitigate DDoS Attacks against Proxy-Based Architectures
    Venkatesan, Sridhar
    Albanese, Massimiliano
    Amin, Kareem
    Jajodia, Sushil
    Wright, Mason
    [J]. 2016 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2016, : 198 - 206
  • [9] Mitigation of DDoS Attack Using Moving Target Defense in SDN
    Swami, Rochak
    Dave, Mayank
    Ranga, Virender
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2023, 131 (04) : 2429 - 2443
  • [10] Mitigation of DDoS Attack Using Moving Target Defense in SDN
    Rochak Swami
    Mayank Dave
    Virender Ranga
    [J]. Wireless Personal Communications, 2023, 131 : 2429 - 2443