Comprehensive Review of Artificial Intelligence and Statistical Approaches in Distributed Denial of Service Attack and Defense Methods

被引:73
|
作者
Khalaf, Bashar Ahmed [1 ]
Mostafa, Salama A. [1 ]
Mustapha, Aida [1 ]
Mohammed, Mazin Abed [2 ]
Abduallah, Wafaa Mustafa [3 ]
机构
[1] Univ Tun Hussein Onn Malaysia, Fac Comp Sci & Informat Technol, Batu Pahat 86400, Malaysia
[2] Univ Anbar, Planning & Follow Up Dept, Anbar 31001, Iraq
[3] Nawroz Univ, Fac Comp Sci & Informat Technol, Duhok 44001, Iraq
来源
IEEE ACCESS | 2019年 / 7卷
关键词
DDoS attack; DDoS defense; artificial intelligence technique; statistical technique; NETWORK INTRUSION DETECTION; DDOS ATTACKS; ANOMALY DETECTION; DOS ATTACKS; SYSTEM; MECHANISMS; INTERNET; TRENDS; SCHEME;
D O I
10.1109/ACCESS.2019.2908998
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Until now, an effective defense method against Distributed Denial of Service (DDoS) attacks is yet to be offered by security systems. Incidents of serious damage due to DDoS attacks have been increasing, thereby leading to an urgent need for new attack identification, mitigation, and prevention mechanisms. To prevent DDoS attacks, the basic features of the attacks need to be dynamically analyzed because their patterns, ports, and protocols or operation mechanisms are rapidly changed and manipulated. Most of the proposed DDoS defense methods have different types of drawbacks and limitations. Some of these methods have signature-based defense mechanisms that fail to identify new attacks and others have anomaly-based defense mechanisms that are limited to specific types of DDoS attacks and yet to be applied in open environments. Subsequently, extensive research on applying artificial intelligence and statistical techniques in the defense methods has been conducted in order to identify, mitigate, and prevent these attacks. However, the most appropriate and effective defense features, mechanisms, techniques, and methods for handling such attacks remain to be an open question. This review paper focuses on the most common defense methods against DDoS attacks that adopt artificial intelligence and statistical approaches. Additionally, the review classifies and illustrates the attack types, the testing properties, the evaluation methods and the testing datasets that are utilized in the methodology of the proposed defense methods. Finally, this review provides a guideline and possible points of encampments for developing improved solution models of defense methods against DDoS attacks.
引用
收藏
页码:51691 / 51713
页数:23
相关论文
共 50 条
  • [41] Defense and Monitoring Model for Distributed Denial of Service Attacks
    Tariq, Usman
    Malik, Yasir
    Abdulrazak, Bessam
    ANT 2012 AND MOBIWIS 2012, 2012, 10 : 1052 - 1056
  • [42] Game-based Simulation of Distributed Denial of Service (DDoS) Attack and Defense Mechanisms of Critical Infrastructures
    Poisel, Rainer
    Rybnicek, Marlies
    Tjoa, Simon
    2013 IEEE 27TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2013, : 114 - 120
  • [43] A Survey on Resource Inflated Denial of Service Attack Defense Mechanisms
    Chand, Nithun O.
    Mathivanan, S.
    PROCEEDINGS OF 2016 ONLINE INTERNATIONAL CONFERENCE ON GREEN ENGINEERING AND TECHNOLOGIES (IC-GET), 2016,
  • [44] A Method for Deploying Distributed Denial of Service Attack Defense Strategies on Edge Servers Using Reinforcement Learning
    Zhang, Haodi
    Hao, Jianye
    Li, Xiaohong
    IEEE ACCESS, 2020, 8 : 78482 - 78491
  • [45] A Comprehensive Review of Deep Learning Techniques for the Detection of (Distributed ) Denial of Service Attacks
    Malliga, S.
    Nandhini, P. S.
    Kogilavani, S. V.
    INFORMATION TECHNOLOGY AND CONTROL, 2022, 51 (01): : 180 - 215
  • [46] Smart defense against distributed Denial of service attack in IoT networks using supervised learning classifiers
    Gupta, B. B.
    Chaudhary, Pooja
    Chang, Xiaojun
    Nedjah, Nadia
    COMPUTERS & ELECTRICAL ENGINEERING, 2022, 98
  • [47] An Adaptive Distributed Denial of Service Attack Prevention Technique in a Distributed Environment
    Riskhan, Basheer
    Safuan, Halawati Abd Jalil
    Hussain, Khalid
    Elnour, Asma Abbas Hassan
    Abdelmaboud, Abdelzahir
    Khan, Fazlullah
    Kundi, Mahwish
    SENSORS, 2023, 23 (14)
  • [48] Distributed frameworks for detecting distributed denial of service attacks: A comprehensive review, challenges and future directions
    Patil, Nilesh Vishwasrao
    Rama Krishna, C.
    Kumar, Krishan
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2021, 33 (10):
  • [49] Distributed Denial of Service Attack in HTTP/2: Review on Security Issues and Future Challenges
    Ming, Liang
    Leau, Yu-Beng
    Xie, Ying
    IEEE ACCESS, 2024, 12 : 33296 - 33308
  • [50] Endogenous Security Defense against Deductive Attack: When Artificial Intelligence Meets Active Defense for Online Service
    Zhou, Zan
    Kuang, Xiaohui
    Sun, Limin
    Zhong, Lujie
    Xu, Changqiao
    IEEE COMMUNICATIONS MAGAZINE, 2020, 58 (06) : 58 - 64