A new metric for flow-level filtering of low-rate DDoS attacks

被引:15
|
作者
Simsek, Mehmet [1 ]
机构
[1] Duzce Univ, Fac Engn, Dept Comp Engn, TR-81620 Duzce, Turkey
关键词
low-rate distributed DoS; TCP; QoS; ipdv; congestion;
D O I
10.1002/sec.1302
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Low-rate distributed denial-of-service (LDDoS) attacks dramatically reduce transmission control protocol throughput by exploiting the vulnerability in the transmission control protocol congestion control mechanism. The current study proposes a new metric called mean Internet Protocol (IP) packet delay variation (mipdv) to detect LDDoS flows and a filtering method called ipdv-based LDDoS filtering (ILF) using mipdv. Receiving first seven packets from a flow is sufficient to calculate the mipdv metric. Subsequently, mipdv can be recalculated for each received packet. This makes the detection of LDDoS flows possible in a short time (in a few tens of milliseconds in most cases). Ns2 simulations were conducted to evaluate the performance of ILF. Experimental results show that ILF detects LDDoS flows in a very short time with very high accuracy. Copyright (C) 2015 John Wiley & Sons, Ltd.
引用
收藏
页码:3815 / 3825
页数:11
相关论文
共 50 条
  • [1] A New Metric for Flow-Level Filtering of Low-Rate DDoS Attacks (vol 8, pg 3815, 2015)
    Simsek, Mehmet
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [2] Flow level detection and filtering of low-rate DDoS
    Zhang, Changwang
    Cai, Zhiping
    Chen, Weifeng
    Luo, Xiapu
    Yin, Jianping
    [J]. COMPUTER NETWORKS, 2012, 56 (15) : 3417 - 3431
  • [3] Modeling of Low-Rate DDoS-Attacks
    Tarasov, Yaroslav
    Pakulova, Ekaterina
    Basov, Oleg
    [J]. PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ON SECURITY OF INFORMATION AND NETWORKS (SIN'19), 2019,
  • [4] A Study on Low-rate DDoS Attacks in Real Networks
    Yang, Jin-Seok
    Park, Min-Woo
    Chung, Tai-Myoung
    [J]. 2013 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE AND APPLICATIONS (ICISA 2013), 2013,
  • [5] Survey on Low-Rate DDoS Attacks, Detection and Defense
    Drinic, Dusan
    Cica, Zoran
    [J]. 2024 23RD INTERNATIONAL SYMPOSIUM INFOTEH-JAHORINA, INFOTEH, 2024,
  • [6] Low-Rate DDoS Attacks Detection and Traceback by Using New Information Metrics
    Xiang, Yang
    Li, Ke
    Zhou, Wanlei
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2011, 6 (02) : 426 - 437
  • [7] A Way to Estimate TCP Throughput under Low-Rate DDoS Attacks: One TCP Flow
    Minh Viet Kieu
    Dai Tho Nguyen
    Thanh Thuy Nguyen
    [J]. 2020 RIVF INTERNATIONAL CONFERENCE ON COMPUTING & COMMUNICATION TECHNOLOGIES (RIVF 2020), 2020, : 334 - 341
  • [8] A Collaborative Detection and IP Traceback Algorithm for Low-rate DDos Attacks
    Gui, Bingxiang
    Zhou, Wanlei
    Zhou, Kang
    [J]. 4TH INTERNATIONAL CONFERENCE ON MATERIALS ENGINEERING FOR ADVANCED TECHNOLOGIES (ICMEAT 2015), 2015, : 546 - 549
  • [9] On the Impact of Low-Rate Attacks
    Guirguis, Mina
    Bestavros, Azer
    Matta, Ibrahim
    [J]. 2006 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-12, 2006, : 2316 - 2321
  • [10] Which One is More Robust to Low-Rate DDoS Attacks? The Multipath TCP or The SCTP
    Ji, Lejun
    Lei, Gang
    Ji, Ruiwen
    Cao, Yuanlong
    Shao, Xun
    Huang, Xin
    [J]. MOBILE INTERNET SECURITY, MOBISEC 2021, 2022, 1544 : 323 - 334