HADEC: Hadoop-based live DDoS detection framework

被引:28
|
作者
Hameed, Sufian [1 ]
Ali, Usman [1 ]
机构
[1] Natl Univ Comp & Emerging Sci NUCES, IT Secur Labs, Karachi, Pakistan
关键词
DDoS; Flooding attacks; DDoS detection; Hadoop;
D O I
10.1186/s13635-018-0081-z
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Distributed denial of service (DDoS) flooding attacks are one of the main methods to destroy the availability of critical online services today. These DDoS attacks cannot be prevented ahead of time, and once in place, they overwhelm the victim with huge volume of traffic and render it incapable of performing normal communication or crashes it completely. Any delays in detecting the flooding attacks completely halts the network services. With the rapid increase of DDoS volume and frequency, the new generation of DDoS detection mechanisms are needed to deal with huge attack volume in reasonable and affordable response time. In this paper, we propose HADEC, a Hadoop-based live DDoS detection framework to tackle efficient analysis of flooding attacks by harnessing MapReduce and HDFS. We implemented a counter-based DDoS detection algorithm for four major flooding attacks (TCP-SYN, HTTP GET, UDP, and ICMP) in MapReduce, consisting of map and reduce functions. We deployed a testbed to evaluate the performance of HADEC framework for live DDoS detection on low-end commodity hardware. Based on the experiment, we showed that HADEC is capable of processing and detecting DDoS attacks in near to real time.
引用
收藏
页数:19
相关论文
共 50 条
  • [11] A Hadoop-Based Framework for Large-Scale Landmine Detection Using Ubiquitous Big Satellite Imaging Data
    El-Kazzaz, Sahar
    El-Mahdy, Ahmed
    23RD EUROMICRO INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED, AND NETWORK-BASED PROCESSING (PDP 2015), 2015, : 274 - 278
  • [12] A Hadoop-based Molecular Docking System
    Dong, Yueli
    Guo, Quan
    Sun, Bin
    2017 INTERNATIONAL CONFERENCE ON CLOUD TECHNOLOGY AND COMMUNICATION ENGINEERING (CTCE2017), 2017, 910
  • [13] Hadoop-based Intrusion Detection Technology and Data Visualization for Website Security
    Zhang, Xiao-ming
    Wang, Yu-xin
    Zhang, Ge-tong
    Wang, Guang
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON COMPUTER NETWORKS AND COMMUNICATION TECHNOLOGY (CNCT 2016), 2016, 54 : 86 - 91
  • [14] Investigation on Hadoop-based distributed search engine
    Chen, Ning
    Xiangyang, Chai
    Journal of Software Engineering, 2014, 8 (03): : 127 - 131
  • [15] Hadoop-based Model of Mass Data Storage
    Yang, Li
    APPLIED SCIENCE, MATERIALS SCIENCE AND INFORMATION TECHNOLOGIES IN INDUSTRY, 2014, 513-517 : 632 - 634
  • [16] A Hadoop-Based Online Teaching Model of "VisibleBody"
    Deng, Haiyan
    Li, Chunyan
    INTERNATIONAL JOURNAL OF EMERGING TECHNOLOGIES IN LEARNING, 2021, 16 (11) : 46 - 58
  • [17] BIG-BIO: - Big Data Hadoop-based Analytic Cluster Framework for Bioinformatics
    Abul Seoud, Rania Ahmed Abdel Azeem
    Mahmoud, Mahmoud Ahmed
    Ramadan, Amr Essam Eldin
    2017 INTERNATIONAL CONFERENCE ON INFORMATICS, HEALTH & TECHNOLOGY (ICIHT), 2017,
  • [18] A HADOOP-BASED DISTRIBUTED FRAMEWORK FOR EFFICIENT MANAGING AND PROCESSING BIG REMOTE SENSING IMAGES
    Wang, C.
    Hu, F.
    Hu, X.
    Zhao, S.
    Wen, W.
    Yang, C.
    ISPRS International Workshop on Spatiotemporal Computing, 2015, : 63 - 66
  • [19] A Hadoop-Based Packet Trace Processing Tool
    Lee, Yeonhee
    Kang, Wonchul
    Lee, Youngseok
    TRAFFIC MONITORING AND ANALYSIS: THIRD INTERNATIONAL WORKSHOP, TMA 2011, 2011, 6613 : 51 - 63
  • [20] Hadoop-based framework for big data analysis of synchronised harmonics in active distribution network
    Cao, Zijian
    Lin, Jin
    Wan, Can
    Song, Yonghua
    Taylor, Gareth
    Li, Maozhen
    IET GENERATION TRANSMISSION & DISTRIBUTION, 2017, 11 (16) : 3930 - 3937