Anomaly Detection for DDoS Attacks Based on Gini Coefficient

被引:0
|
作者
Liu, Yun
Jiang, Siyu
Huang, Jiuming
机构
关键词
anomaly detection; Gini coefficient; TCM-KNN algorithm;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Distributed Denial-of-Service (DDoS) attacks present a very serious threat to the stability of the Internet. In this paper, an anomaly detection method for DDoS attacks based on Gini coefficient is proposed. First, Gini coefficient is introduced to measure the inequalities of packet attribution (IP addresses and ports) distributions during attacks. Then, an improved TCM-KNN algorithm is applied to identify attacks by classifying the Gini coefficient samples extracted from real-time network traffic. The experimental results demonstrate that the proposed method can effectively distinguish DDoS attacks from normal traffic, and has higher detection ratio and lower false alarm ratio than similar detection methods.
引用
收藏
页码:649 / 654
页数:6
相关论文
共 50 条
  • [1] A review on statistical approaches for anomaly detection in DDoS attacks
    Nooribakhsh, Mahsa
    Mollamotalebi, Mahdi
    INFORMATION SECURITY JOURNAL, 2020, 29 (03): : 118 - 133
  • [2] A Review on Statistical Approaches for Anomaly Detection in DDoS Attacks
    Nooribakhsh, Mahsa
    Mollamotalebi, Mahdi
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2018, 12 (06): : 13 - 26
  • [3] User Behavior Anomaly Detection for Application Layer DDoS Attacks
    Najafabadi, Maryam M.
    Khoshgoftaar, Taghi M.
    Calvert, Chad
    Kemp, Clifford
    2017 IEEE 18TH INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION (IEEE IRI 2017), 2017, : 154 - 161
  • [4] Exploring Realistic VANET Simulations for Anomaly Detection of DDoS Attacks
    Baharlouei, Hamideh
    Makanju, Adetokunbo
    Zincir-Heywood, Nur
    2022 IEEE 95TH VEHICULAR TECHNOLOGY CONFERENCE (VTC2022-SPRING), 2022,
  • [5] An Anomaly-Based Method for DDoS Attacks Detection using RBF Neural Networks
    Karimazad, Reyhaneh
    Faraahi, Ahmad
    NETWORK AND ELECTRONICS ENGINEERING, 2011, 11 : 44 - 48
  • [6] The Use of Anomaly Detection for the Detection of Different Types of DDoS Attacks in Cloud Environment
    Hossein Abbasi
    Naser Ezzati-Jivan
    Martine Bellaiche
    Chamseddine Talhi
    Michel R. Dagenais
    Journal of Hardware and Systems Security, 2021, 5 (3-4) : 208 - 222
  • [7] Anomaly Detection for DDoS Attacks via Behavior Profiles Deviation Degree
    Liu, Yun
    Jiang, Siyu
    Huang, Jiuming
    INFORMATION TECHNOLOGY APPLICATIONS IN INDUSTRY, PTS 1-4, 2013, 263-266 : 3145 - 3150
  • [8] An anomaly based distributed detection system for DDoS attacks in Tier-2 ISP networks
    Bhandari, Abhinav
    Kumar, Krishan
    Sangal, A. L.
    Behal, Sunny
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2021, 12 (01) : 1387 - 1406
  • [9] An anomaly based distributed detection system for DDoS attacks in Tier-2 ISP networks
    Abhinav Bhandari
    Krishan Kumar
    A. L. Sangal
    Sunny Behal
    Journal of Ambient Intelligence and Humanized Computing, 2021, 12 : 1387 - 1406
  • [10] D-FACE: An anomaly based distributed approach for early detection of DDoS attacks and flash events
    Behal, Sunny
    Kumar, Krishan
    Sachdeva, Monika
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2018, 111 : 49 - 63