Developing Realistic Distributed Denial of Service (DDoS) Attack Dataset and Taxonomy

被引:0
|
作者
Sharafaldin, Iman [1 ]
Lashkari, Arash Habibi [1 ]
Hakak, Saqib [1 ]
Ghorbani, Ali A. [1 ]
机构
[1] Univ New Brunswick UNB, Canadian Inst Cybersecur CIC, Fac Comp Sci, Fredericton, NB, Canada
关键词
DDoS; IDS; DDoS Dataset; DDoS taxonomy; Network Traffic;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Distributed Denial of Service (DDoS) attack is a menace to network security that aims at exhausting the target networks with malicious traffic. Although many statistical methods have been designed for DDoS attack detection, designing a real-time detector with low computational overhead is still one of the main concerns. On the other hand, the evaluation of new detection algorithms and techniques heavily relies on the existence of well-designed datasets. In this paper, first, we review the existing datasets comprehensively and propose a new taxonomy for DDoS attacks. Secondly, we generate a new dataset, namely CICDDoS2019, which remedies all current shortcomings. Thirdly, using the generated dataset, we propose a new detection and family classificaiton approach based on a set of network flow features. Finally, we provide the most important feature sets to detect different types of DDoS attacks with their corresponding weights.
引用
下载
收藏
页数:8
相关论文
共 50 条
  • [21] Distributed Denial of Service: Attack techniques and mitigation
    Vanitha, K. S.
    Uma, S. V.
    Mahidhar, S. K.
    2017 2ND INTERNATIONAL CONFERENCE ON CIRCUITS, CONTROLS, AND COMMUNICATIONS (CCUBE), 2017, : 226 - 231
  • [22] An analysis and fingerprinting of a distributed denial of service attack
    Sung, MH
    Haas, M
    Xu, J
    6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL VIII, PROCEEDINGS: CONCEPTS AND APPLICATIONS OF SYSTEMICS, CYBERNETICS AND INFORMATICS II, 2002, : 274 - 279
  • [23] Distributed Denial of Service (DDoS) detection by traffic pattern analysis
    Theerasak Thapngam
    Shui Yu
    Wanlei Zhou
    S. Kami Makki
    Peer-to-Peer Networking and Applications, 2014, 7 : 346 - 358
  • [24] Distributed Denial of Service (DDoS) detection by traffic pattern analysis
    Thapngam, Theerasak
    Yu, Shui
    Zhou, Wanlei
    Makki, S. Kami
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2014, 7 (04) : 346 - 358
  • [25] RateGuard: A Robust Distributed Denial of Service (DDoS) Defense System
    Sun, Huizhong
    Ngan, Wingchiu
    Chao, H. Jonathan
    GLOBECOM 2009 - 2009 IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE, VOLS 1-8, 2009, : 2033 - 2040
  • [26] AI in the Detection and Prevention of Distributed Denial of Service (DDoS) Attacks
    Ahmadi, Sina
    International Journal of Advanced Computer Science and Applications, 2024, 15 (10) : 23 - 29
  • [27] Deep learning model for distributed denial of service (DDoS) detection
    Tennakoon, Chaminda
    Fernando, Subha
    INTERNATIONAL JOURNAL OF ADVANCED AND APPLIED SCIENCES, 2022, 9 (02): : 109 - 118
  • [28] Distributed denial of service (DDoS) attack mitigation in software defined network (SDN)-based cloud computing environment
    Bhushan, Kriti
    Gupta, B. B.
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2019, 10 (05) : 1985 - 1997
  • [29] Protecting against distributed denial of service (DDoS) attacks using distributed filtering
    Trostle, Jonathan
    2006 SECURECOMM AND WORKSHOPS, 2006, : 201 - 211
  • [30] Distributed denial of service (DDoS) attack mitigation in software defined network (SDN)-based cloud computing environment
    Kriti Bhushan
    B. B. Gupta
    Journal of Ambient Intelligence and Humanized Computing, 2019, 10 : 1985 - 1997