An Efficient Multiplex Network Model for Effective Honeypot Roaming Against DDoS Attacks

被引:1
|
作者
Ren, Jianguo [1 ,2 ]
Zhi, Qiang [1 ]
机构
[1] Jiangsu Normal Univ, Coll Comp Sci, Xuzhou 221116, Peoples R China
[2] Jiangsu Normal Univ, Res Ctr Complex Networks & Swarm Intelligence, Xuzhou 221116, Peoples R China
基金
美国国家科学基金会;
关键词
Denial-of-service attack; Roaming; Servers; Network topology; Optimization; Numerical models; Dynamic scheduling; Honeypot roaming; multiplex network; roaming frequency; network security; SERVICE; INTERNET; PROPAGATION; DYNAMICS; DEFENSE;
D O I
10.1109/TNSE.2023.3333230
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Honeypot roaming represents an effective mechanism against distributed denial of service (DDoS) attacks at the cost of system resources. Currently, the roaming frequency is set randomly, which brings the question of how often honeypots need to roam to minimize the attack impacts while preserving limited system resources. To address this challenge, this paper proposes an effective Multiplex Network Model, called MNM. First, an innovative multiplex network model composed of a normal node layer and a honeypot node layer is constructed, providing a probabilistic description of dynamical functional interaction and achieving the state transition between the two layers. Then, a condition is defined to determine whether nodes can be continuously infected during the DDoS attacks. More importantly, an optimal roaming frequency is theoretically determined using optimization theory to optimize the related parameters. A series of experimental verifications was made in three different two-layer network topologies, and the results indicate that our proposals are effective in reducing attack impacts and lowering resource consumption compared to a series of random roaming frequencies. This study can provide significant guidance for roaming honeypot design.
引用
收藏
页码:1909 / 1921
页数:13
相关论文
共 50 条
  • [31] A Cost-Effective Shuffling-Based Defense against HTTP DDoS Attacks with SDN/NFV
    Lin, Yi-Hui
    Kuo, Jian-Jhih
    Yang, De-Nian
    Chen, Wen-Tsuen
    2017 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2017,
  • [32] Integrated Hidden Markov Model and Bayes Packet classifier for effective mitigation of application DDOS attacks
    Prabha, S.
    Anitha, R.
    International Journal of Computer Science Issues, 2011, 8 (4 4-2): : 587 - 597
  • [33] An Effective Classification of DDoS Attacks in a Distributed Network by Adopting Hierarchical Machine Learning and Hyperparameters Optimization Techniques
    Dasari, Sandeep
    Kaluri, Rajesh
    IEEE ACCESS, 2024, 12 : 10834 - 10845
  • [34] Efficient Based on Improved Random Forest Defense System Against Application-Layer DDoS Attacks
    He, Junjiang
    Fang, Wenbo
    Lan, Xiaolong
    Yang, Geying
    Chen, Ziyu
    Chen, Yang
    Li, Tao
    Chen, Jiangchuan
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2024, 2024
  • [35] Enhancing IoT Network Security: Unveiling the Power of Self-Supervised Learning against DDoS Attacks
    Almaraz-Rivera, Josue Genaro
    Cantoral-Ceballos, Jose Antonio
    Botero, Juan Felipe
    SENSORS, 2023, 23 (21)
  • [36] An AI based Approach to Secure SDN Enabled Future Avionics Communications Network Against DDoS Attacks
    Ali, Muhammad
    Benamrane, Fouad
    Luong, Doanh Kim
    Hu, Yim-Fun
    Li, Jian-Ping
    Abdo, Kanaan
    2019 IEEE/AIAA 38TH DIGITAL AVIONICS SYSTEMS CONFERENCE (DASC), 2019,
  • [37] Efficient Detection of DDoS Attacks Using a Hybrid Deep Learning Model with Improved Feature Selection
    Alghazzawi, Daniyal
    Bamasag, Omaimah
    Ullah, Hayat
    Asghar, Muhammad Zubair
    APPLIED SCIENCES-BASEL, 2021, 11 (24):
  • [38] Predicting DoS and DDoS attacks in network security scenarios using a hybrid deep learning model
    Al-zubidi, Azhar F.
    Farhan, Alaa Kadhim
    Towfek, Sayed M.
    JOURNAL OF INTELLIGENT SYSTEMS, 2024, 33 (01)
  • [39] An Efficient Scheme for Securing XOR Network Coding against Pollution Attacks
    Yu, Zhen
    Wei, Yawen
    Ramkumar, Bhuvaneswari
    Guan, Yong
    IEEE INFOCOM 2009 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, VOLS 1-5, 2009, : 406 - 414
  • [40] Efficient Codeguard Mechanism Against Pollution Attacks in Interflow Network Coding
    Krithiga, J.
    Porselvi, R. C.
    2014 INTERNATIONAL CONFERENCE ON COMMUNICATIONS AND SIGNAL PROCESSING (ICCSP), 2014,