Detecting distributed denial-of-service attacks using Kolmogorov complexity metrics

被引:33
|
作者
Kulkarni, Amit
Bush, Stephen [1 ]
机构
[1] Rensselaer Polytech Inst, New York, NY USA
[2] Gen Elect Global Res Ctr, Niskayuna, NY USA
关键词
Kolmogorov complexity; denial-of-service attack; active network; entropy; complexity probes;
D O I
10.1007/s10922-005-9016-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper describes an approach to detecting distributed denial of service (DDoS) attacks that is based on fundamentals of Information Theory, specifically Kolmogorov Complexity. A theorem derived using principles of Kolmogorov Complexity states that the joint complexity measure of random strings is lower than the sum of the complexities of the individual strings when the strings exhibit some correlation. Furthermore, the joint complexity measure varies inversely with the amount of correlation. We propose a distributed active network-based algorithm that exploits this property to correlate arbitrary traffic flows in the network to detect possible denial-of-service attacks. One of the strengths of this algorithm is that it does not require special filtering rules and hence it can be used to detect any type of DDoS attack. We implement and investigate the performance of the algorithm in an active network. Our results show that DDoS attacks can be detected in a manner that is not sensitive to legitimate background traffic.
引用
收藏
页码:69 / 80
页数:12
相关论文
共 50 条
  • [41] An Efficient Defense against Distributed Denial-of-Service Attacks using Congestion Path Marking
    Kim, Yoohwan
    Abd El Al, Ahmed
    Jo, Ju-Yeon
    Yang, Mei
    Jiang, Yingtao
    2006 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-12, 2006, : 2159 - 2164
  • [42] A practical approach to detection of distributed denial-of-service attacks using a hybrid detection method
    Bojovic, P. D.
    Basicevic, I.
    Ocovaj, S.
    Popovic, M.
    COMPUTERS & ELECTRICAL ENGINEERING, 2019, 73 : 84 - 96
  • [43] Investigation of Simple Denial-of-Service Attacks
    Voitovych, Olesya
    Baryshev, Yurii
    Kolibabchuk, Eduard
    Kupershtein, Leonid
    2016 THIRD INTERNATIONAL SCIENTIFIC-PRACTICAL CONFERENCE PROBLEMS OF INFOCOMMUNICATIONS SCIENCE AND TECHNOLOGY (PIC S&T), 2016, : 145 - 148
  • [44] Distributed Localization in Wireless Sensor Networks Under Denial-of-Service Attacks
    Shi, Lei
    Liu, Qingchen
    Shao, Jinliang
    Cheng, Yuhua
    IEEE CONTROL SYSTEMS LETTERS, 2021, 5 (02): : 493 - 498
  • [45] Distributed Resilient Filtering for Power Systems Subject to Denial-of-Service Attacks
    Chen, Wei
    Ding, Derui
    Dong, Hongli
    Wei, Guoliang
    IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2019, 49 (08): : 1688 - 1697
  • [46] Denial-of-service attacks and countermeasures on BitTorrent
    Lehmann, Matheus Brenner
    Santos, Flavio Roberto
    Gaspary, Luciano Paschoal
    Barcellos, Marinho Pilla
    COMPUTER NETWORKS, 2012, 56 (15) : 3479 - 3498
  • [47] Preventing Distributed Denial-of-Service Flooding Attacks With Dynamic Path Identifiers
    Luo, Hongbin
    Chen, Zhe
    Li, Jiawei
    Vasilakos, Athanasios V.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2017, 12 (08) : 1801 - 1815
  • [48] PFS: Probabilistic Filter Scheduling Against Distributed Denial-of-Service Attacks
    Seo, Dongwon
    Lee, Heejo
    Perrig, Adrian
    2011 IEEE 36TH CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN), 2011, : 9 - 17
  • [49] Optimizing the pulsing denial-of-service attacks
    Luo, XP
    Chang, RKC
    2005 INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2005, : 582 - 591
  • [50] Denial-of-service attacks rip the Internet
    Garber, L
    COMPUTER, 2000, 33 (04) : 12 - 17