Distributed Denial of Service (DDoS) detection by traffic pattern analysis

被引:22
|
作者
Thapngam, Theerasak [1 ]
Yu, Shui [1 ]
Zhou, Wanlei [1 ]
Makki, S. Kami [2 ]
机构
[1] Deakin Univ, Sch Informat Technol, Burwood, Vic 3125, Australia
[2] Lamar Univ, Dept Comp Sci, Beaumont, TX 77710 USA
关键词
DDoS attacks; Correlation coefficient; Anomaly detection; Traffic patterns; ATTACKS; DEFENSE;
D O I
10.1007/s12083-012-0173-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we propose a behavior-based detection that can discriminate Distributed Denial of Service (DDoS) attack traffic from legitimated traffic regardless to various types of the attack packets and methods. Current DDoS attacks are carried out by attack tools, worms and botnets using different packet-transmission rates and packet forms to beat defense systems. These various attack strategies lead to defense systems requiring various detection methods in order to identify the attacks. Moreover, DDoS attacks can craft the traffics like flash crowd events and fly under the radar through the victim. We notice that DDoS attacks have features of repeatable patterns which are different from legitimate flash crowd traffics. In this paper, we propose a comparable detection methods based on the Pearson's correlation coefficient. Our methods can extract the repeatable features from the packet arrivals in the DDoS traffics but not in flash crowd traffics. The extensive simulations were tested for the optimization of the detection methods. We then performed experiments with several datasets and our results affirm that the proposed methods can differentiate DDoS attacks from legitimate traffics.
引用
收藏
页码:346 / 358
页数:13
相关论文
共 50 条
  • [31] Detecting Distributed Denial of Service (DDoS) attacks through inductive learning
    Noh, S
    Lee, C
    Choi, K
    Jung, GH
    [J]. INTELLIGENT DATA ENGINEERING AND AUTOMATED LEARNING, 2003, 2690 : 286 - 295
  • [32] Factors Effecting Businesses due to Distributed Denial of Service (DDoS) Attack
    Mateen, Hafsa
    Shahzad, Malik
    Awan, Kaleem
    [J]. 4TH INTERNATIONAL CONFERENCE ON INNOVATIVE COMPUTING (IC)2, 2021, : 404 - 410
  • [33] Distributed denial of service (DDoS) resilience in cloud: Review and conceptual cloud DDoS mitigation framework
    Osanaiye, Opeyemi
    Choo, Kim-Kwang Raymond
    Dlodlo, Mqhele
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 67 : 147 - 165
  • [34] Toward Generating a New Cloud-Based Distributed Denial of Service (DDoS) Dataset and Cloud Intrusion Traffic Characterization
    Shafi, Mohammadmoein
    Lashkari, Arash Habibi
    Rodriguez, Vicente
    Nevo, Ron
    [J]. INFORMATION, 2024, 15 (04)
  • [35] Distributed Denial of Service Attack Detection in Network Traffic Using Deep Learning Algorithm
    Ramzan, Mahrukh
    Shoaib, Muhammad
    Altaf, Ayesha
    Arshad, Shazia
    Iqbal, Faiza
    Castilla, Angel Kuc
    Ashraf, Imran
    [J]. SENSORS, 2023, 23 (20)
  • [36] DISTRIBUTED DENIAL OF SERVICE (DDOS) NETWORK ATTACKS: IMPACT ON THE VIRTUAL LEARNING ENVIRONMENT
    Atayero, A. A.
    Oshin, O. I.
    Oshin, B. O.
    Alatishe, A. S.
    [J]. ICERI2014: 7TH INTERNATIONAL CONFERENCE OF EDUCATION, RESEARCH AND INNOVATION, 2014, : 2235 - 2240
  • [37] A Review on Distributed Denial of Service (DDoS) Mitigation Techniques in Cloud Computing Environment
    Ahamed, Junath Naseer
    Iyengar, N. Ch. S. N.
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (08): : 277 - 294
  • [38] Mass network flooding attacks (distributed denial of service - DDoS) surface in the wild
    Hancock, B
    [J]. COMPUTERS & SECURITY, 2000, 19 (01) : 6 - 7
  • [39] Distributed Denial of Service (DDoS) Attacks in Software-defined Networks (SDN)
    Chahal, Jasmeen Kaur
    Kaur, Puninder
    Sharma, Avinash
    [J]. 2021 5TH INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER TECHNOLOGIES AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2021, : 291 - 295
  • [40] A Survey on Distributed Denial of Service (DDoS) Attacks in SDN and Cloud Computing Environments
    Dong, Shi
    Abbas, Khushnood
    Jain, Raj
    [J]. IEEE ACCESS, 2019, 7 : 80813 - 80828