D-FACE: An anomaly based distributed approach for early detection of DDoS attacks and flash events

被引:62
|
作者
Behal, Sunny [1 ]
Kumar, Krishan [2 ]
Sachdeva, Monika [3 ]
机构
[1] IKG Punjab Tech Univ, Kapurthala, Punjab, India
[2] Panjab Univ, UIET, Dept IT, Chandigarh, India
[3] IKG Punjab Tech Univ, Dept CSE, Kapurthala, Punjab, India
关键词
Network security; DDoS attacks; Flash events; Entropy; Information distance; ENTROPY; SYSTEM;
D O I
10.1016/j.jnca.2018.03.024
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In the present computer era, though the Internet-based applications are the driving force of social evolution, yet its architectural vulnerabilities proffer plethoric leisure to the attackers for conquering diversity of attacks on its services. Distributed Denial of Service (DDoS) is one of such prominent attack that constitutes a lethal threat to Internet domain that harnesses its computing and communication resources. Despite the presence of enormous defense solutions, ensuring the security and availability of data, resources, and services to end users remains an ongoing research challenge. In addition, the increase in network traffic rates of legitimate traffic and flow similarity of attack traffic with legitimate traffic has further made DDoS problem more crucial. The current research has deployed DDoS defense solutions primarily at the victim-end because of the inherent advantages of easy deployment and availability of complete attack information. However, the huge network traffic volume generated by DDoS attacks and lack of sufficient computational resources at the victim-end makes defense solution itself vulnerable to these attacks. This paper proposes an ISP level distributed, flexible, automated, and collaborative (D-FACE) defense system which not only distributes the computational and storage complexity to the nearest point of presence (PoPs) routers but also leads to an early detection of DDoS attacks and flash events (FEs). The results show that D-FACE defense system outperformed the existing Entropy-based systems on various defense system evaluation metrics.
引用
收藏
页码:49 / 63
页数:15
相关论文
共 50 条
  • [21] SDDA-IoT: storm-based distributed detection approach for IoT network traffic-based DDoS attacks
    Shukla, Praveen
    Krishna, C. Rama
    Patil, Nilesh Vishwasrao
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (05): : 6397 - 6424
  • [22] Detection of DDoS attacks in D2D communications using machine learning approach
    Rani, S. V. Jansi
    Ioannou, Iacovos
    Nagaradjane, Prabagarane
    Christophorou, Christophoros
    Vassiliou, Vasos
    Charan, Sai
    Prakash, Sai
    Parekh, Niel
    Pitsillides, Andreas
    COMPUTER COMMUNICATIONS, 2023, 198 : 32 - 51
  • [23] Superpoint-Based Detection Against Distributed Denial of Service (DDoS) Flooding Attacks
    Jiang, Hong
    Chen, Shuqiao
    Hu, Hongchao
    Zhang, Mingming
    2015 IEEE 21ST INTERNATIONAL WORKSHOP ON LOCAL & METROPOLITAN AREA NETWORKS (LANMAN), 2015,
  • [24] A Language-Based Approach to Prevent DDoS Attacks in Distributed Financial Agent Systems
    Fazeldehkordi, Elahe
    Owe, Olaf
    Ramezanifarkhani, Toktam
    COMPUTER SECURITY: ESORICS 2019 INTERNATIONAL WORKSHOPS, IOSEC, MSTEC, AND FINSEC, 2020, 11981 : 258 - 277
  • [25] Towards Persistent Detection of DDoS Attacks in NDN: A Sketch-Based Approach
    Xu, Zhiwei
    Wang, Xin
    Zhang, Yujun
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (04) : 3449 - 3465
  • [26] Hierarchical Anomaly-Based Detection of Distributed DNS Attacks on Enterprise Networks
    Lyu, Minzhao
    Gharakheili, Hassan Habibi
    Russell, Craig
    Sivaraman, Vijay
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2021, 18 (01): : 1031 - 1048
  • [27] MAC Based Routing Table Approach to Detect and Prevent DDoS Attacks and Flash Crowds in VoIP Networks
    Jeyanthi, N.
    Sriman, N. Ch.
    Iyengar, Narayana
    CYBERNETICS AND INFORMATION TECHNOLOGIES, 2011, 11 (04) : 41 - 52
  • [28] Distributed Denial of Service (DDoS) Attacks Detection System for OpenStack-based Private Cloud
    Virupakshar, Karan B.
    Asundi, Manjunath
    Channal, Kishor
    Shettar, Pooja
    Patil, Somashekar
    Narayan, D. G.
    INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND DATA SCIENCE, 2020, 167 : 2297 - 2307
  • [29] A generalized detection system to detect distributed denial of service attacks and flash events for information theory metrics
    Behal, Sunny
    Kumar, Krishan
    Sachdeva, Monika
    TURKISH JOURNAL OF ELECTRICAL ENGINEERING AND COMPUTER SCIENCES, 2018, 26 (04) : 1759 - 1770
  • [30] An entropy and machine learning based approach for DDoS attacks detection in software defined networks
    Hassan, Amany I.
    Abd El Reheem, Eman
    Guirguis, Shawkat K.
    SCIENTIFIC REPORTS, 2024, 14 (01):