SlowTrack: detecting slow rate Denial of Service attacks against HTTP with behavioral parameters

被引:0
|
作者
Shaurya Sood
Neminath Hubballi
机构
[1] Indian Institute of Technology,
来源
关键词
Application layer attack; HTTP; Slow rate DoS; Slowloris; Attack detection;
D O I
暂无
中图分类号
学科分类号
摘要
Denial of Service (DoS) attacks have evolved from volumetric attacks to target specific applications and can cripple different services with very limited effort. Hypertext Transfer Protocol (HTTP) is vulnerable to a slow rate DoS attack generated through prolonged connections which deliberately send incomplete requests to server. Simple detection methods which use x number of such connections in y time can be easily evaded. In this paper, we present SlowTrack which can detect slow rate DoS attacks against HTTP using a set of behavioral parameters. SlowTrack uses eight behavioral parameters which are validated to be useful in identifying the attack. We correlate these parameters to understand how their values change when attack is launched and subsequently use these observations to propose detection methods. SlowTrack is composed of three detection algorithms which make use of these observations for detecting attacks. We evaluate the detection performance of SlowTarck using experiments done in a testbed and also in a live network to show that these algorithms can detect the slow rate attacks effectively.
引用
收藏
页码:1788 / 1817
页数:29
相关论文
共 50 条
  • [31] Detecting Denial-of-Service attacks using the wavelet transform
    Hamdi, Mohamed
    Boudriga, Noureddine
    COMPUTER COMMUNICATIONS, 2007, 30 (16) : 3203 - 3213
  • [32] Detecting denial of service attacks using Support Vector Machines
    Mukkamala, S
    Sung, AH
    PROCEEDINGS OF THE 12TH IEEE INTERNATIONAL CONFERENCE ON FUZZY SYSTEMS, VOLS 1 AND 2, 2003, : 1231 - 1236
  • [33] Detecting Denial of Service attacks using machine learning algorithms
    Kimmi Kumari
    M. Mrunalini
    Journal of Big Data, 9
  • [34] Modeling and Simulation of Low Rate of Denial of Service Attacks
    Xia, Kuiliang
    GREEN POWER, MATERIALS AND MANUFACTURING TECHNOLOGY AND APPLICATIONS III, PTS 1 AND 2, 2014, 484-485 : 1063 - 1066
  • [35] Enhancing DNS resilience against denial of service attacks
    Pappas, Vasileios
    Massey, Dan
    Zhang, Lixia
    37TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2007, : 450 - +
  • [36] Testing Resilience of Router against Denial of Service Attacks
    Karande, Vishal Maruti
    Narayanan, Sandeep Nair
    Pais, Alwyn Roshan
    Balakrishnan, N.
    TRENDS IN NETWORKS AND COMMUNICATIONS, 2011, 197 : 107 - +
  • [37] Protecting openflow switches against Denial of Service Attacks
    Bahaa-Eldin, Ayman M.
    ElDessouky, Ebada Essam-Eldin
    Dag, Hasan
    2017 12TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND SYSTEMS (ICCES), 2017, : 479 - 484
  • [38] A behavioral model for characterizing flooding distributed denial of service attacks
    Tinubu O.
    Sodiya A.
    Ojesanmi O.
    International Journal of Information Technology, 2023, 15 (2) : 955 - 964
  • [39] A Particle Filter-based Approach for Effectively Detecting Low-rate Denial of Service Attacks
    Wu Zhijun
    Jiang Jun
    Yue Meng
    2016 INTERNATIONAL CONFERENCE ON CYBER-ENABLED DISTRIBUTED COMPUTING AND KNOWLEDGE DISCOVERY PROCEEDINGS - CYBERC 2016, 2016, : 86 - 90
  • [40] Assessing the security of web service frameworks against Denial of Service attacks
    Oliveira, Rui Andre
    Laranjeiro, Nuno
    Vieira, Marco
    JOURNAL OF SYSTEMS AND SOFTWARE, 2015, 109 : 18 - 31