SlowTrack: detecting slow rate Denial of Service attacks against HTTP with behavioral parameters

被引:0
|
作者
Shaurya Sood
Neminath Hubballi
机构
[1] Indian Institute of Technology,
来源
关键词
Application layer attack; HTTP; Slow rate DoS; Slowloris; Attack detection;
D O I
暂无
中图分类号
学科分类号
摘要
Denial of Service (DoS) attacks have evolved from volumetric attacks to target specific applications and can cripple different services with very limited effort. Hypertext Transfer Protocol (HTTP) is vulnerable to a slow rate DoS attack generated through prolonged connections which deliberately send incomplete requests to server. Simple detection methods which use x number of such connections in y time can be easily evaded. In this paper, we present SlowTrack which can detect slow rate DoS attacks against HTTP using a set of behavioral parameters. SlowTrack uses eight behavioral parameters which are validated to be useful in identifying the attack. We correlate these parameters to understand how their values change when attack is launched and subsequently use these observations to propose detection methods. SlowTrack is composed of three detection algorithms which make use of these observations for detecting attacks. We evaluate the detection performance of SlowTarck using experiments done in a testbed and also in a live network to show that these algorithms can detect the slow rate attacks effectively.
引用
收藏
页码:1788 / 1817
页数:29
相关论文
共 50 条
  • [21] Defending against denial of service attacks in scout
    Spatscheck, O
    Peterson, LL
    USENIX ASSOCIATION PROCEEDINGS OF THE THIRD SYMPOSIUM ON OPERATING SYSTEMS DESIGN AND IMPLEMENTATION (OSDI '99), 1999, : 59 - 72
  • [22] Protection Against Denial of Service Attacks: A Survey
    Loukas, Georgios
    Oke, Gulay
    COMPUTER JOURNAL, 2010, 53 (07): : 1020 - 1037
  • [23] Countermeasures against Distributed Denial of Service attacks
    Stefanidis, K.
    Serpanos, D. N.
    2005 IEEE INTELLIGENT DATA ACQUISITION AND ADVANCED COMPUTING SYSTEMS: TECHNOLOGY AND APPLICATIONS, 2005, : 439 - 442
  • [24] Slow denial-of-service attacks on software defined networks
    Interdisciplinary Centre for Security, Reliability and Trust , University of Luxembourg, Luxembourg
    不详
    不详
    Comput. Networks, 2020,
  • [25] Slow denial-of-service attacks on software defined networks
    Pascoal, Tulio A.
    Fonseca, Iguatemi E.
    Nigam, Vivek
    COMPUTER NETWORKS, 2020, 173
  • [26] Novel mechanism to defend against low-rate denial-of-service attacks
    Wei, Wei
    Dong, Yabo
    Lu, Dongming
    Jin, Guang
    Lao, Honglan
    INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2006, 3975 : 261 - 271
  • [27] Detecting distributed denial of service attacks by sharing distributed beliefs
    Peng, T
    Leckie, C
    Ramamohanarao, K
    INFORMATION SECURITY AND PRIVACY, PROCEEDINGS, 2003, 2727 : 214 - 225
  • [28] Detecting denial-of-service attacks with incomplete audit data
    Patcha, A
    Park, JM
    ICCCN 2005: 14th International Conference on Computer Communications and Networks, Proceedings, 2005, : 263 - 268
  • [29] Detecting dsitributed denial of service attacks with discrete wavelet transform
    Ren, JA
    Li, JP
    Chen, F
    Wavelet Analysis and Active Media Technology Vols 1-3, 2005, : 1412 - 1418
  • [30] Detecting Denial of Service attacks using machine learning algorithms
    Kumari, Kimmi
    Mrunalini, M.
    JOURNAL OF BIG DATA, 2022, 9 (01)