arrow
返回

A fast all-packets-based DDoS attack detection approach based on network graph and graph kernel

delete2021-07-01
delete10
PRE
AI
X
Xinqian Liu
任
任家东 (Jiadong Ren) *
H
Haitao He
B
Bing Zhang
C
Chen Song
Y
Yunxue Wang
DOI:10.1016/j.jnca.2021.103079delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
DDoS attack detection methods play a very important role in protecting computer network security. However, the existing flow-based DDoS attack detection methods face the non-negligible time delay and are not general for different types of DDoS attacks at different rates. In order to fill this research gap, a fast all-packets-based DDoS attack detection approach (FAPDD) is proposed. The FAPDD firstly designs a new time series network graph model to effectively simplify the processing of network traffic handling compared with the flow-based detections. Furthermore, it is the first time that the directed Weisfeiler-Lehman graph kernel is built for measuring the divergence between the current network graph and the normalization network graphs. Due to the new graph model and kernel measurement method to judge network changes, the different types and rates of DDoS attacks can be especially detected. In addition, the dynamic threshold and freezing mechanism are constructed to display standard traffic changes and prevent the pollution of attack traffic to the standard network. Finally, a number of real DDoS attack datasets are applied to evaluate the effectiveness of the proposed method, as well as the overall time efficiency and detection effect. Compared with other methods, the FAPDD can better meet the real-time requirements and achieve good detection effects in different types of DDoS attacks with different attack rates.
Keyword:
Network security
Fast DDoS attack detection
Network graph based all packets
Directed weisfeiler-lehman graph kernel
Dynamic threshold mechanism
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

Journal of Network and Computer Applications 封面图
Journal of Network and Computer Applications
IF:
8
论文数:
3.6K
被引数:
1.1W

机构

Y
Yanshan University
学者数:
1.7W
论文数: 1.1W
被引数: 1.3W
引用论文

引用论文

An early detection of low rate DDoS attack to SDN based data center networks using information distance metrics
err2018-12-01
err122
PREAI
errSahoo, Kshira Sagar; Puthal, Deepak; Tiwary, Mayank; Rodrigues, Joel J. P. C.; Sahoo, Bibhudatta; Dash, Ratnakar
err分享
err收藏
Ca2+ Dynamics in Chemoreceptor Cells: An Overview
err1993-01-01
err0
errOAAI
errC. González; J. R. López-López; A. Obeso; A. Rocher; J. García-Sancho
err分享
err收藏
Computational intelligence intrusion detection techniques in mobile cloud computing environments: Review, taxonomy, and open research issues
err2020-12-01
err91
PREAI
errShamshirband, Shahab; Fathi, Mahdis; Chronopoulos, Anthony T.; Montieri, Antonio; Palumbo, Fabio; Pescape, Antonio
err分享
err收藏
Zero-Day Signature Extraction for High-Volume Attacks
err2019-04-01
err19
PREAI
errAfek, Yehuda; Bremler-Barr, Anat; Feibish, Shir Landau
err分享
err收藏
学者 查看更多内容