An information divergence based approach to detect flooding DDoS attacks and Flash Crowds

被引:0
|
作者
Kaur, Gursharanjeet
Behal, Sunny
Shifali
机构
关键词
DDoS attack; Flash crowd; distance measurement; Flow similarity; DENIAL-OF-SERVICE;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Distributed Denial of Service (DDoS) attacks poses a severe threat to widely used Internet-based services and applications. Currently, during in the technology era, the internet is the only real exigent that delivers a glut of services like businesses, banking, communication, education, e-commerce, etc. Distributed Denial of Service attack aims to deny access by legitimate users to shared services or resources. Because of the vulnerability of the initial style of the web, attackers can merely mimic the patterns of legitimate network traffic. The prevailing fingerprint or feature-based methods are not appropriate to detect a recent DDoS attack. In this paper our goal is to detect a DDoS attack as well as Flash Crowd using various information distance measures such as Kullbeck-Leibler, Hellinger and Manhattan distance to measure the flow similarity among the traffic. Further the detection parameters such as Detection Rate, Classification Rate, Precision Rate and False Positive Rate is computed and shows that the Kullbeck-Leibler detection metric effectively detects the attack as compared to the other two.
引用
收藏
页码:251 / 258
页数:8
相关论文
共 50 条
  • [1] MAC Based Routing Table Approach to Detect and Prevent DDoS Attacks and Flash Crowds in VoIP Networks
    Jeyanthi, N.
    Sriman, N. Ch.
    Iyengar, Narayana
    [J]. CYBERNETICS AND INFORMATION TECHNOLOGIES, 2011, 11 (04) : 41 - 52
  • [2] A Behavior-Based Method for Distinction of Flooding DDoS and Flash Crowds
    Sun, Degang
    Yang, Kun
    Shi, Zhixin
    Lv, Bin
    [J]. KNOWLEDGE SCIENCE, ENGINEERING AND MANAGEMENT (KSEM 2017): 10TH INTERNATIONAL CONFERENCE, KSEM 2017, MELBOURNE, VIC, AUSTRALIA, AUGUST 19-20, 2017, PROCEEDINGS, 2017, 10412 : 129 - 136
  • [3] Detecting Flooding DDoS Under Flash Crowds Based on Mondrian Forest
    Sun, Degang
    Yang, Kun
    Shi, Zhixin
    Wang, Yan
    [J]. WIRELESS ALGORITHMS, SYSTEMS, AND APPLICATIONS, WASA 2017, 2017, 10251 : 729 - 740
  • [4] A Distinction Method of Flooding DDoS and Flash Crowds Based on User Traffic Behavior
    Sun, Degang
    Yang, Kun
    Shi, Zhixin
    Wang, Yan
    [J]. 2017 16TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS / 11TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING / 14TH IEEE INTERNATIONAL CONFERENCE ON EMBEDDED SOFTWARE AND SYSTEMS, 2017, : 65 - 72
  • [5] BEHAVIOR-BASED CLUSTERING FOR DISCRIMINATION BETWEEN FLASH CROWDS AND DDoS ATTACKS
    Heo, Young Jun
    Oh, Jintae
    Jang, Jongsoo
    [J]. SECRYPT 2009: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2009, : 140 - 143
  • [6] AN EFFECTIVE METHOD FOR DIFFERENTIATING BETWEEN DDOS ATTACKS AND FLASH CROWDS
    Yan, Ruoyu
    Wang, Yingfeng
    [J]. INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2024, 20 (01): : 31 - 46
  • [7] Distinguishing DDoS Attacks from Flash Crowds Using Probability Metrics
    Li, Ke
    Zhou, Wanlei
    Li, Ping
    Hai, Jing
    Liu, Jianwen
    [J]. NSS: 2009 3RD INTERNATIONAL CONFERENCE ON NETWORK AND SYSTEM SECURITY, 2009, : 9 - 17
  • [8] A Practical System for Guaranteed Access in the Presence of DDoS Attacks and Flash Crowds
    Kung, Yi-Hsuan
    Lee, Taeho
    Tseng, Po-Ning
    Hsiao, Hsu-Chun
    Kim, Tiffany Hyun-Jin
    Lee, Soo Bum
    Lin, Yue-Hsun
    Perrig, Adrian
    [J]. 2015 IEEE 23RD INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (ICNP), 2015, : 212 - 223
  • [9] Detect DDoS flooding attacks in mobile ad hoc networks
    Guo, Yinghua
    Perreau, Sylvie
    [J]. International Journal of Security and Networks, 2010, 5 (04) : 259 - 269
  • [10] AN ABNORMAL-BASED APPROACH TO EFFECTIVELY DETECT DDOS ATTACKS
    Li, Ke
    Zhou, Wanlei
    [J]. JOURNAL OF THE CHINESE INSTITUTE OF ENGINEERS, 2009, 32 (07) : 889 - 895