An Unsupervised Approach for Online Detection and Mitigation of High-Rate DDoS Attacks Based on an In-Memory Distributed Graph Using Streaming Data and Analytics

被引:7
|
作者
Villalobos, J. J. [1 ]
Rodero, Ivan [1 ]
Parashar, Manish [1 ]
机构
[1] Rutgers Univ State Univ New Jersey, Rutgers Discovery Informat Inst, Piscataway, NJ 08854 USA
基金
美国国家科学基金会;
关键词
DDoS Detection; DDoS Mitigation; Machine Learning; Distributed; Big Data; Analytics;
D O I
10.1145/3148055.3148077
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A Distributed Denial of Service (DDoS) attack is an attempt to make an online service, a network, or even an entire organization, unavailable by saturating it with traffic from multiple sources. DDoS attacks are among the most common and most devastating threats that network defenders have to watch out for. DDoS attacks are becoming bigger, more frequent, and more sophisticated. Volumetric attacks are the most common types of DDoS attacks. A DDoS attack is considered volumetric, or high-rate, when within a short period of time it generates a large amount of packets or a high volume of traffic. High-rate attacks are well-known and have received much attention in the past decade; however, despite several detection and mitigation strategies have been designed and implemented, high-rate attacks are still halting the normal operation of information technology infrastructures across the Internet when the protection mechanisms are not able to cope with the aggregated capacity that the perpetrators have put together. With this in mind, the present paper aims to propose and test a distributed and collaborative architecture for online high-rate DDoS attack detection and mitigation based on an in-memory distributed graph data structure and unsupervised machine learning algorithms that leverage real-time streaming data and analytics. We have successfully tested our proposed mechanism using a real-world DDoS attack dataset at its original rate in pursuance of reproducing the conditions of an actual large scale attack.
引用
收藏
页码:103 / 112
页数:10
相关论文
共 7 条
  • [1] A Novel Measure for Low-rate and High-rate DDoS Attack Detection using Multivariate Data Analysis
    Hoque, Nazrul
    Bhattacharyya, Dhruba K.
    Kalita, Jugal K.
    [J]. 2016 8TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORKS (COMSNETS), 2016,
  • [2] Two-Layer Approach for Mixed High-Rate and Low-Rate Distributed Denial of Service (DDoS) Attack Detection and Filtering
    S. Toklu
    M. Şimşek
    [J]. Arabian Journal for Science and Engineering, 2018, 43 : 7923 - 7931
  • [3] Two-Layer Approach for Mixed High-Rate and Low-Rate Distributed Denial of Service (DDoS) Attack Detection and Filtering
    Toklu, S.
    Simsek, M.
    [J]. ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2018, 43 (12) : 7923 - 7931
  • [4] FFSc: a novel measure for low-rate and high-rate DDoS attack detection using multivariate data analysis
    Hoque, Nazrul
    Bhattacharyya, Dhruba K.
    Kalita, Jugal K.
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (13) : 2032 - 2041
  • [5] Experiment-based detection of service disruption attacks in optical networks using data analytics and unsupervised learning
    Furdek, Marija
    Natalino, Carlos
    Schiano, Marco
    Di Giglio, Andrea
    [J]. METRO AND DATA CENTER OPTICAL NETWORKS AND SHORT-REACH LINKS II, 2019, 10946
  • [6] Effectiveness of an Entropy-Based Approach for Detecting Low- and High-Rate DDoS Attacks against the SDN Controller: Experimental Analysis
    Aladaileh, Mohammad Adnan
    Anbar, Mohammed
    Hintaw, Ahmed J.
    Hasbullah, Iznan H.
    Bahashwan, Abdullah Ahmed
    Al-Amiedy, Taief Alaa
    Ibrahim, Dyala R.
    [J]. APPLIED SCIENCES-BASEL, 2023, 13 (02):
  • [7] Graph-Based Clustering Approach for Economic and Financial Event Detection Using News Analytics Data
    Sidorov, Sergei P.
    Faizliev, Alexey R.
    Levshunov, Michael
    Chekmareva, Alfia
    Gudkov, Alexander
    Korobov, Eugene
    [J]. SOCIAL INFORMATICS (SOCINFO 2018), PT II, 2018, 11186 : 271 - 280