Low-Rate DDoS Attack Detection Using Expectation of Packet Size

被引:32
|
作者
Zhou, Lu [1 ]
Liao, Mingchao [1 ]
Yuan, Cao [1 ]
Zhang, Haoyu [1 ]
机构
[1] Wuhan Polytech Univ, Sch Math & Comp Sci, Wuhan 430023, Hubei, Peoples R China
基金
中国国家自然科学基金;
关键词
D O I
10.1155/2017/3691629
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Low-rate Distributed Denial-of-Service (low-rate DDoS) attacks are a new challenge to cyberspace, as the attackers send a large amount of attack packets similar to normal traffic, to throttle legitimate flows. In this paper, we propose a measurement-expectation of packet size-that is based on the distribution difference of the packet size to distinguish two typical low-rate DDoS attacks, the constant attack and the pulsing attack, from legitimate traffic. The experimental results, obtained using a series of real datasets with different times and different tolerance factors, are presented to demonstrate the effectiveness of the proposed measurement. In addition, extensive experiments are performed to show that the proposed measurement can detect the low-rate DDoS attacks not only in the short and long terms but also for low packet rates and high packet rates. Furthermore, the false-negative rates and the adjudication distance can be adjusted based on the detection sensitivity requirements.
引用
收藏
页数:14
相关论文
共 50 条
  • [31] METER: An Ensemble DWT-based Method for Identifying Low-rate DDoS Attack in SDN
    Wang, Cong
    Cui, Yunhe
    Qian, Qing
    Shen, Guowei
    Gao, Hongfeng
    Li, Saifei
    2021 IEEE 19TH INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (EUC 2021), 2021, : 79 - 86
  • [32] Low-Rate DoS Attack Detection Using PSD based Entropy and Machine Learning
    Zhang, Naiji
    Jaafar, Fehmi
    Malik, Yasir
    2019 6TH IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND CLOUD COMPUTING (IEEE CSCLOUD 2019) / 2019 5TH IEEE INTERNATIONAL CONFERENCE ON EDGE COMPUTING AND SCALABLE CLOUD (IEEE EDGECOM 2019), 2019, : 59 - 62
  • [33] Low-rate and High-rate Distributed DoS Attack Detection Using Partial Rank Correlation
    Bhuyan, M. H.
    Kalwar, A.
    Goswami, A.
    Bhattacharyya, D. K.
    Kalita, J. K.
    2015 FIFTH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORK TECHNOLOGIES (CSNT2015), 2015, : 706 - 710
  • [34] A Study on Low-rate DDoS Attacks in Real Networks
    Yang, Jin-Seok
    Park, Min-Woo
    Chung, Tai-Myoung
    2013 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE AND APPLICATIONS (ICISA 2013), 2013,
  • [35] Clustering Based DDoS Attack Detection Using The Relationship Between Packet Headers
    Ates, Cagatay
    Ozdel, Suleyman
    Anarim, Emin
    2019 INNOVATIONS IN INTELLIGENT SYSTEMS AND APPLICATIONS CONFERENCE (ASYU), 2019, : 473 - 478
  • [36] Capturing low-rate DDoS attack based on MQTT protocol in software Defined-IoT environment
    Al-Fayoumi, Mustafa
    Abu Al-Haija, Qasem
    ARRAY, 2023, 19
  • [37] Extracting Low-Rate DDoS Attack Characteristics: The Case of Multipath TCP-Based Communication Networks
    Lei, Gang
    Ji, Lejun
    Ji, Ruiwen
    Cao, Yuanlong
    Shao, Xun
    Huang, Xin
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2021, 2021
  • [38] Exploring New Opportunities to Defeat Low-Rate DDoS Attack in Container-Based Cloud Environment
    Li, Zhi
    Jin, Hai
    Zou, Deqing
    Yuan, Bin
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2020, 31 (03) : 695 - 706
  • [39] Detection and defence method of low-rate DDoS attacks in vehicle edge computing network using information metrics
    Bai, Xiao
    Chen, Shanzhi
    Shi, Yan
    Liang, Chengzhi
    Lv, Xiaochen
    Yu, F. Richard
    INTERNATIONAL JOURNAL OF SENSOR NETWORKS, 2022, 40 (01) : 20 - 33
  • [40] A novel multi-scale CNN and Bi-LSTM arbitration dense network model for low-rate DDoS attack detection
    Xiaochun Yin
    Wei Fang
    Zengguang Liu
    Deyong Liu
    Scientific Reports, 14