Countermeasures on application level low-rate denial-of-service attack

作者: Yajuan Tang

DOI: 10.1007/978-3-642-34129-8_7

关键词:

摘要: Low-Rate Denial-of-Service (LRDoS) attack is an emerging threat to Internet because it can evade detection and defense schemes for flooding based attacks. LRDoS at application level particularly difficult counteract as mimics legitimate client. Although there are several approaches proposed mitigate attacks, they limited particular protocols, target systems, or patterns that not able detect this level. In paper, we propose a nonparametric algorithm hybrid system attacks Our extensive experiments have confirmed the effectiveness of system.

参考文章(30)
B. E. Brodsky, B. S. Darkhovsky, Non-parametric statistical diagnosis : problems and methods Kluwer Academic. ,(2000)
Xiapu Luo, Rocky K. C. Chang, On a New Class of Pulsing Denial-of-Service Attacks and the Defense. network and distributed system security symposium. ,(2005)
M. Crovella, K. Parka, G. Kim, On the effect of traffic self-similarity on network performance Performance and control of network systems. Conference. pp. 296- 310 ,(1997)
Xidong Deng, Sungwon Yi, G. Kesidis, C.R. Das, Stabilized virtual buffer (SVB) - an active queue management scheme for Internet quality-of-service global communications conference. ,vol. 2, pp. 1628- 1632 ,(2002) , 10.1109/GLOCOM.2002.1188473
M. Guirguis, A. Bestavros, I. Matta, Exploiting the transients of adaptation for RoQ attacks on Internet resources international conference on network protocols. pp. 184- 195 ,(2004) , 10.1109/ICNP.2004.1348109
Haibin Sun, J.C.S. Lui, D.K.Y. Yau, Defending against low-rate TCP attacks: dynamic detection and protection international conference on network protocols. pp. 196- 205 ,(2004) , 10.1109/ICNP.2004.1348110
Yajuan Tang, Xiapu Luo, Rocky Chang, Protecting Internet services from low-rate DoS attacks international conference on critical infrastructure protection. pp. 251- 265 ,(2007) , 10.1007/978-0-387-75462-8_18
Gabriel Maciá-Fernández, Jesús E. Díaz-Verdejo, Pedro García-Teodoro, Francisco de Toro-Negro, LoRDAS: A Low-Rate DoS Attack against Application Servers Critical Information Infrastructures Security. pp. 197- 209 ,(2008) , 10.1007/978-3-540-89173-4_17
M. Guirguis, A. Bestavros, I. Matta, Y. Zhang, Reduction of quality (RoQ) attacks on Internet end-systems international conference on computer communications. ,vol. 2, pp. 1362- 1372 ,(2005) , 10.1109/INFCOM.2005.1498361
Peter J. Rousseeuw, Mia Hubert, Robust statistics for outlier detection Wiley Interdisciplinary Reviews-Data Mining and Knowledge Discovery. ,vol. 1, pp. 73- 79 ,(2011) , 10.1002/WIDM.2