Distributed Denial of Service (DDoS) detection by traffic pattern analysis

被引:22
|
作者
Thapngam, Theerasak [1 ]
Yu, Shui [1 ]
Zhou, Wanlei [1 ]
Makki, S. Kami [2 ]
机构
[1] Deakin Univ, Sch Informat Technol, Burwood, Vic 3125, Australia
[2] Lamar Univ, Dept Comp Sci, Beaumont, TX 77710 USA
关键词
DDoS attacks; Correlation coefficient; Anomaly detection; Traffic patterns; ATTACKS; DEFENSE;
D O I
10.1007/s12083-012-0173-3
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we propose a behavior-based detection that can discriminate Distributed Denial of Service (DDoS) attack traffic from legitimated traffic regardless to various types of the attack packets and methods. Current DDoS attacks are carried out by attack tools, worms and botnets using different packet-transmission rates and packet forms to beat defense systems. These various attack strategies lead to defense systems requiring various detection methods in order to identify the attacks. Moreover, DDoS attacks can craft the traffics like flash crowd events and fly under the radar through the victim. We notice that DDoS attacks have features of repeatable patterns which are different from legitimate flash crowd traffics. In this paper, we propose a comparable detection methods based on the Pearson's correlation coefficient. Our methods can extract the repeatable features from the packet arrivals in the DDoS traffics but not in flash crowd traffics. The extensive simulations were tested for the optimization of the detection methods. We then performed experiments with several datasets and our results affirm that the proposed methods can differentiate DDoS attacks from legitimate traffics.
引用
收藏
页码:346 / 358
页数:13
相关论文
共 50 条
  • [41] Distributed Denial of Service (DDoS) Mitigation Using Blockchain-A Comprehensive Insight
    Wani, Sharyar
    Imthiyas, Mohammed
    Almohamedh, Hamad
    Alhamed, Khalid M.
    Almotairi, Sultan
    Gulzar, Yonis
    [J]. SYMMETRY-BASEL, 2021, 13 (02): : 1 - 21
  • [42] A Survey of Defense Mechanisms Against Distributed Denial of Service (DDoS) Flooding Attacks
    Zargar, Saman Taghavi
    Joshi, James
    Tipper, David
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2013, 15 (04): : 2046 - 2069
  • [43] A detection design for distributed denial of service attack
    Fujita, N
    [J]. 6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL I, PROCEEDINGS: INFORMATION SYSTEMS DEVELOPMENT I, 2002, : 78 - 82
  • [44] Detection of Application Layer Distributed Denial of Service
    Ye, Chengxu
    Zheng, Kesong
    [J]. 2011 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT), VOLS 1-4, 2012, : 310 - 314
  • [45] Online Distributed Denial of Service (DDoS) intrusion detection based on adaptive sliding window and morphological fractal dimension
    Baldini, Gianmarco
    Amerini, Irene
    [J]. COMPUTER NETWORKS, 2022, 210
  • [46] Distributed denial-of-service and intrusion detection
    Zhou, Xiaobo
    Xu, Cheng-Zhong
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2007, 30 (03) : 819 - 822
  • [47] DIDDOS: An approach for detection and identification of Distributed Denial of Service (DDoS) cyberattacks using Gated Recurrent Units (GRU)
    Rehman, Saif ur
    Khaliq, Mubashir
    Imtiaz, Syed Ibrahim
    Rasool, Aamir
    Shafiq, Muhammad
    Javed, Abdul Rehman
    Jalil, Zunera
    Bashir, Ali Kashif
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 118 : 453 - 466
  • [48] Real-Time Detection and Mitigation of Distributed Denial of Service (DDoS) Attacks in Software Defined Networking (SDN)
    Lawal, Babatunde Hafis
    At, Nuray
    [J]. 2018 26TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS CONFERENCE (SIU), 2018,
  • [49] Developing Realistic Distributed Denial of Service (DDoS) Dataset for Machine Learning-based Intrusion Detection System
    Hadi, Hassan Jalil
    Hayat, Umer
    Musthaq, Numan
    Hussain, Faisal Bashir
    Cao, Yue
    [J]. 2022 9TH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY, IOTSMS, 2022, : 212 - 217
  • [50] Distributed denial of service attacks and detection mechanisms
    Rafsanjani, Marjan Kuchaki
    Kazeminejad, Neda
    [J]. JOURNAL OF COMPUTATIONAL METHODS IN SCIENCES AND ENGINEERING, 2014, 14 (06) : 329 - 345