SlowTrack: detecting slow rate Denial of Service attacks against HTTP with behavioral parameters

被引:0
|
作者
Shaurya Sood
Neminath Hubballi
机构
[1] Indian Institute of Technology,
来源
关键词
Application layer attack; HTTP; Slow rate DoS; Slowloris; Attack detection;
D O I
暂无
中图分类号
学科分类号
摘要
Denial of Service (DoS) attacks have evolved from volumetric attacks to target specific applications and can cripple different services with very limited effort. Hypertext Transfer Protocol (HTTP) is vulnerable to a slow rate DoS attack generated through prolonged connections which deliberately send incomplete requests to server. Simple detection methods which use x number of such connections in y time can be easily evaded. In this paper, we present SlowTrack which can detect slow rate DoS attacks against HTTP using a set of behavioral parameters. SlowTrack uses eight behavioral parameters which are validated to be useful in identifying the attack. We correlate these parameters to understand how their values change when attack is launched and subsequently use these observations to propose detection methods. SlowTrack is composed of three detection algorithms which make use of these observations for detecting attacks. We evaluate the detection performance of SlowTarck using experiments done in a testbed and also in a live network to show that these algorithms can detect the slow rate attacks effectively.
引用
收藏
页码:1788 / 1817
页数:29
相关论文
共 50 条
  • [1] SlowTrack: detecting slow rate Denial of Service attacks against HTTP with behavioral parameters
    Sood, Shaurya
    Hubballi, Neminath
    JOURNAL OF SUPERCOMPUTING, 2024, 80 (02): : 1788 - 1817
  • [2] Slow rate denial of service attacks against HTTP/2 and detection
    Tripathi, Nikhil
    Hubballi, Neminath
    COMPUTERS & SECURITY, 2018, 72 : 255 - 272
  • [3] Low-Rate Denial-of-Service Attacks against HTTP/2 Services
    Adi, Erwin
    Baig, Zubair
    Lam, Chiou Peng
    Hingston, Philip
    2015 5TH INTERNATIONAL CONFERENCE ON IT CONVERGENCE AND SECURITY (ICITCS), 2015,
  • [4] On Detection and Mitigation of Slow Rate Denial of Service Attacks
    Sikora, Marek
    Gerlich, Tomas
    Malina, Lukas
    2019 11TH INTERNATIONAL CONGRESS ON ULTRA MODERN TELECOMMUNICATIONS AND CONTROL SYSTEMS AND WORKSHOPS (ICUMT), 2019,
  • [5] Detecting and Reacting against Distributed Denial of Service Attacks
    Bouzida, Yacine
    Cuppens, Frederic
    Gombault, Sylvain
    2006 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-12, 2006, : 2394 - 2399
  • [6] Distributed denial-of-service attacks against HTTP/2 services
    Adi, Erwin
    Baig, Zubair A.
    Hingston, Philip
    Lam, Chiou-Peng
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2016, 19 (01): : 79 - 86
  • [7] Distributed denial-of-service attacks against HTTP/2 services
    Erwin Adi
    Zubair A. Baig
    Philip Hingston
    Chiou-Peng Lam
    Cluster Computing, 2016, 19 : 79 - 86
  • [8] Detecting Denial of Service Attacks in the Cloud
    Kumar, Raneel
    Lal, Sunil Pranit
    Sharma, Alok
    2016 IEEE 14TH INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, 14TH INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, 2ND INTL CONF ON BIG DATA INTELLIGENCE AND COMPUTING AND CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/DATACOM/CYBERSC, 2016, : 309 - 316
  • [9] Detecting Denial of Service Attacks in Tor
    Danner, Norman
    Krizanc, Danny
    Liberatore, Marc
    FINANCIAL CRYPTOGRAPHY AND DATA SECURITY, 2009, 5628 : 273 - 284
  • [10] A Rule-Based Mechanism for Detecting HTTP Denial of Service Attacks During Flash Crowd Event
    Alsaleem, Samer
    Manickam, Selvakumar
    Anbar, Mohammed
    Alnajjar, Ahmed
    Saleh, Esraa
    ADVANCED SCIENCE LETTERS, 2017, 23 (06) : 5423 - 5425