E-Had: A distributed and collaborative detection framework for early detection of DDoS attacks

被引:18
|
作者
Patil, Nilesh Vishwasrao [1 ]
Krishna, C. Rama [2 ]
Kumar, Krishan [3 ]
Behal, Sunny [4 ]
机构
[1] NITTTR, Chandigarh, India
[2] NITTTR, Dept Comp Sci, Chandigarh, India
[3] Panjab Univ, Univ Inst Technol, Dept Informat Technol, Chandigarh, India
[4] Dept Comp Sci & Engn, SBS State Tech Campus, Firozpur, Punjab, India
关键词
DoS attack; DDoS attack; Apache Hadoop; Hadoop Distributed File System (HDFS); MapReduce; Entropy; Big Data; DETECTION SYSTEM; FLASH EVENTS; DEFENSE;
D O I
10.1016/j.jksuci.2019.06.016
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
During the past few years, the traffic volume of legitimate traffic and attack traffic has increased mani-folds up to Terabytes per second (Tbps). Because of the processing of such a huge traffic volume, it has become implausible to detect high rate attacks in time using conventional DDoS defense architectures. At present, the majority of the DDoS defense systems are deployed predominantly at the victim-end domain But these victim-end defense systems themselves are vulnerable to HR-DDoS attacks as the mammoth volume of attack traffic is generated by such type of attacks. The insufficient computational resources further make the problem more crucial at the victim-end. This paper proposed a distributed and collaborative architecture called E-Had that is capable of efficiently processing a large amount of data by distributing it among a number of mappers and reducers in a Hadoop based cluster. The proposed E -Had system has been comprehensively validated using various publicly available benchmarked datasets and real datasets generated in HA-DDoS testbed in terms of various detection system evaluation metrics. The experimental results clearly show that the proposed detection system is capable of early detection of different scenarios of DDoS attacks along with differentiating them from flash crowds.(c) 2019 The Authors. Production and hosting by Elsevier B.V. on behalf of King Saud University. This is an open access article under the CC BY-NC-ND license (http://creativecommons.org/licenses/by-nc-nd/4.0/).
引用
收藏
页码:1373 / 1387
页数:15
相关论文
共 50 条
  • [41] A Statistical Model for Early Detection of DDoS Attacks on Random Targets in SDN
    Shohani, Reza Bakhtiari
    Mostafavi, Seyedakbar
    Hakami, Vesal
    WIRELESS PERSONAL COMMUNICATIONS, 2021, 120 (01) : 379 - 400
  • [42] Early Detection of DDoS Attacks Against Software Defined Network Controllers
    Seyed Mohammad Mousavi
    Marc St-Hilaire
    Journal of Network and Systems Management, 2018, 26 : 573 - 591
  • [43] A Statistical Model for Early Detection of DDoS Attacks on Random Targets in SDN
    Reza Bakhtiari Shohani
    Seyedakbar Mostafavi
    Vesal Hakami
    Wireless Personal Communications, 2021, 120 : 379 - 400
  • [44] Early Detection of DDoS Attacks Against Software Defined Network Controllers
    Mousavi, Seyed Mohammad
    St-Hilaire, Marc
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2018, 26 (03) : 573 - 591
  • [45] Proactive detection of DDoS attacks utilizing k-NN classifier in an anti-DDos framework
    Nguyen, Hoai-Vu
    Choi, Yongsun
    World Academy of Science, Engineering and Technology, 2009, 39 : 640 - 645
  • [46] A novel optimization-driven deep learning framework for the detection of DDoS attacks
    Batchu, Raj Kumar
    Bikku, Thulasi
    Thota, Srinivasarao
    Seetha, Hari
    Ayoade, Abayomi Ayotunde
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [47] A distributed defense framework for flooding-based DDoS attacks
    You, Yonghua
    Zulkernine, Mohammad
    Haque, Anwar
    ARES 2008: PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON AVAILABILITY, SECURITY AND RELIABILITY, 2008, : 245 - +
  • [48] Superpoint-Based Detection Against Distributed Denial of Service (DDoS) Flooding Attacks
    Jiang, Hong
    Chen, Shuqiao
    Hu, Hongchao
    Zhang, Mingming
    2015 IEEE 21ST INTERNATIONAL WORKSHOP ON LOCAL & METROPOLITAN AREA NETWORKS (LANMAN), 2015,
  • [49] CoWatch: Collaborative Prediction of DDoS Attacks in Edge Computing with Distributed SDN
    Zhou, Hongliang
    Jia, Xiaohua
    Shu, Jiangang
    Zhou, Lei
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [50] An RBF-PSO Based Approach for Early Detection of DDoS Attacks in SDN
    Dayal, Neelam
    Srivastava, Shashank
    2018 10TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS & NETWORKS (COMSNETS), 2018, : 17 - 24