Characterizing flash events and distributed denial-of-service attacks: an empirical investigation

作者: Abhinav Bhandari , Amrit Lal Sangal , Krishan Kumar

DOI: 10.1002/SEC.1472

关键词:

摘要: In the information age where Internet is most important means of delivery plethora services, distributed denial-of-service DDoS attacks have emerged as one serious threat. Strategic, security, social, and financial implications these ceaselessly alarmed entire cyber community. To obviate a attack mitigate its impact, there an irrevocable prerequisite to accurately detect them promptly. An inherent challenge in addressing this issue efficiently distinguish from characteristically analogous flash events FEs which are bona fide occurrences generated by legitimate users. Most studies focused on finding out unique characteristics isolation, with peril false alarms heuristically. preclude this, it pertinent fundamentally focus identifying FE vis-a-vis ab initio has been basis work. The aim paper formulate taxonomy compare segregate using several empirical metrics. Real emulation datasets used validate both. extensive analysis study establishes that numerous technical dissimilarities can be exploited separate similar looking events. Copyright © 2016 John Wiley & Sons, Ltd.

参考文章(28)
Karanpreet Singh, Paramvir Singh, Krishan Kumar, A systematic review of IP traceback schemes for denial of service attacks Computers & Security. ,vol. 56, pp. 111- 139 ,(2016) , 10.1016/J.COSE.2015.06.007
Hyundo Park, Peng Li, Debin Gao, Heejo Lee, Robert H Deng, None, Distinguishing between FE and DDoS Using Randomness Check Lecture Notes in Computer Science. pp. 131- 145 ,(2008) , 10.1007/978-3-540-85886-7_9
Ejaz Ahmed, George Mohay, Alan Tickle, Sajal Bhatia, None, Use of IP Addresses for High Rate Flooding Attack Detection information security conference. pp. 124- 135 ,(2010) , 10.1007/978-3-642-15257-3_12
Shui Yu, Song Guo, Ivan Stojmenovic, Can we beat legitimate cyber behavior mimicking attacks from botnets international conference on computer communications. pp. 2851- 2855 ,(2012) , 10.1109/INFCOM.2012.6195714
Sajal Bhatia, Desmond Schmidt, George Mohay, Alan Tickle, A framework for generating realistic traffic for Distributed Denial-of-Service attacks and Flash Events Computers & Security. ,vol. 40, pp. 95- 107 ,(2014) , 10.1016/J.COSE.2013.11.005
Wei Zhou, Weijia Jia, Sheng Wen, Yang Xiang, Wanlei Zhou, None, Detection and defense of application-layer DDoS attacks in backbone web traffic Future Generation Computer Systems. ,vol. 38, pp. 36- 46 ,(2014) , 10.1016/J.FUTURE.2013.08.002
Shui Yu, Wanlei Zhou, Weijia Jia, Song Guo, Yong Xiang, Feilong Tang, Discriminating DDoS Attacks from Flash Crowds Using Flow Correlation Coefficient IEEE Transactions on Parallel and Distributed Systems. ,vol. 23, pp. 1073- 1080 ,(2012) , 10.1109/TPDS.2011.262
Jaeyeon Jung, Balachander Krishnamurthy, Michael Rabinovich, Flash crowds and denial of service attacks: characterization and implications for CDNs and web sites the web conference. pp. 293- 304 ,(2002) , 10.1145/511446.511485
Mohammed A. Saleh, Azizah Abdul Manaf, A Novel Protective Framework for Defeating HTTP-Based Denial of Service and Distributed Denial of Service Attacks The Scientific World Journal. ,vol. 2015, pp. 238230- 238230 ,(2015) , 10.1155/2015/238230
Monika Sachdeva, Krishan Kumar, A traffic cluster entropy based approach to distinguish DDoS attacks from flash event using DETER testbed International Scholarly Research Notices. ,vol. 2014, pp. 2- ,(2014) , 10.1155/2014/259831