返回
Efficient DDoS flood attack detection using dynamic thresholding on flow-based network traffic
DOI:10.1016/j.cose.2019.01.002.png)
摘要
En 中文
Internet applications are used in various sectors as it contributes in enhancing the system usage in many respects. However, the interconnected computer systems and networks are vulnerable to very large number of attacks; Distributed Denial of Service being a major one. This paper analyses the features of network traffic and the existing algorithms to detect Distributed Denial of Service attacks and proposes an efficient statistical approach to detect the attacks based on traffic features and dynamic threshold detection algorithm. Dynamic threshold is made use of since both network activities and user's behaviour could vary over time. The proposed algorithm extract different traffic features, calculate four attributes based on the characteristics of Distributed Denial of Service and the attack gets detected when the calculated attributes within a time interval is greater than the threshold value. MIT Lincoln Laboratory DARPA datasets and dataset developed in an university laboratory are used to validate the algorithm and the model proposed in this paper and also to measure the performance of the proposed approach. Experimental results demonstrate the improved performance of the proposed approach with significantly higher detection rate and accuracy and lesser processing time compared to the existing methods. (C) 2019 Elsevier Ltd. All rights reserved.
Keyword:
DDoS attack
Network security
Dynamic threshold
Network traffic
Traffic features
期刊
C
IF:
5.4
论文数:
4.6K
被引数:
1.4W
机构
引用论文
Isolation and X-ray characterization of a new crystal modification of Pd6(μ2-CO)6(μ-dppm)3 during the synthesis of the novel fluxional triangulo Pd(0) complex [Pd3(μ2-CO)3(dppm)2]n (n = 1 or 2)
Polyhedron
IF0
A framework for generating realistic traffic for Distributed Denial-of-Service attacks and Flash Events
COMPUTERS & SECURITY
IF5.4

