Robust Self-Protection Against Application-Layer (D)DoS Attacks in SDN Environment

被引:20
|
作者
Benzaid, Chafika [1 ]
Boukhalfa, Mohammed [1 ]
Taleb, Tarik [1 ,2 ]
机构
[1] Aalto Univ, Espoo, Finland
[2] Univ Oulu, Oulu, Finland
基金
芬兰科学院;
关键词
D O I
10.1109/wcnc45663.2020.9120472
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The expected high bandwidth of 5G and the envisioned massive number of connected devices will open the door to increased and sophisticated attacks, such as application-layer DDoS attacks. Application-layer DDoS attacks are complex to detect and mitigate due to their stealthy nature and their ability to mimic genuine behavior. In this work, we propose a robust application-layer DDoS self-protection framework that empowers a fully autonomous detection and mitigation of the application-layer DDoS attacks leveraging on Deep Learning (DL) and SDN enablers. The DL models have been proven vulnerable to adversarial attacks, which aim to fool the DL model into taking wrong decisions. To overcome this issue, we build a DL-based application-layer DDoS detection model that is robust to adversarial examples. The performance results show the effectiveness of the proposed framework in protecting against application-layer DDoS attacks even in the presence of adversarial attacks.
引用
收藏
页数:6
相关论文
共 19 条
  • [1] DNS Unchained: Amplified Application-Layer DoS Attacks Against DNS Authoritatives
    Bushart, Jonas
    Rossow, Christian
    RESEARCH IN ATTACKS, INTRUSIONS, AND DEFENSES, RAID 2018, 2018, 11050 : 139 - 160
  • [2] Detecting Slow Application-Layer DoS Attacks With PCA
    Kemp, Clifford
    Calvert, Chad
    Khoshgoftaar, Taghi M.
    2021 IEEE 22ND INTERNATIONAL CONFERENCE ON INFORMATION REUSE AND INTEGRATION FOR DATA SCIENCE (IRI 2021), 2021, : 176 - 183
  • [3] A Web Application Runtime Application Self-protection Scheme against Script Injection Attacks
    Yin, Zhongxu
    Li, Zhufeng
    Cao, Yan
    CLOUD COMPUTING AND SECURITY, PT II, 2018, 11064 : 566 - 577
  • [4] Online monitoring and analysis for self-protection against network attacks
    Qu, GZ
    Hariri, S
    Jangiti, S
    Rudraraju, J
    Oh, S
    Fayssal, S
    Zhang, GS
    Parashar, M
    INTERNATIONAL CONFERENCE ON AUTONOMIC COMPUTING, PROCEEDINGS, 2004, : 324 - 325
  • [5] Coda: Runtime Detection of Application-Layer CPU-Exhaustion DoS Attacks in Containers
    Zhan, Mengqi
    Li, Yang
    Yang, Huiran
    Yu, Guangxi
    Li, Bo
    Wang, Weiping
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2023, 16 (03) : 1686 - 1697
  • [6] Practical and Accurate Runtime Application Protection Against DoS Attacks
    Elsabagh, Mohamed
    Fleck, Dan
    Stavrou, Angelos
    Kaplan, Michael
    Bowen, Thomas
    RESEARCH IN ATTACKS, INTRUSIONS, AND DEFENSES (RAID 2017), 2017, 10453 : 450 - 471
  • [7] A Self-protection Mechanism against Stepping-stone Attacks for IaaS Clouds
    Kourai, Kenichi
    Azumi, Takeshi
    Chiba, Shigeru
    2012 9TH INTERNATIONAL CONFERENCE ON UBIQUITOUS INTELLIGENCE & COMPUTING AND 9TH INTERNATIONAL CONFERENCE ON AUTONOMIC & TRUSTED COMPUTING (UIC/ATC), 2012, : 539 - 546
  • [8] Efficient Based on Improved Random Forest Defense System Against Application-Layer DDoS Attacks
    He, Junjiang
    Fang, Wenbo
    Lan, Xiaolong
    Yang, Geying
    Chen, Ziyu
    Chen, Yang
    Li, Tao
    Chen, Jiangchuan
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2024, 2024
  • [9] Self-protection against corrosion of aged magnesium alloy in simulated physiological environment
    Wu, Guosong
    Zhao, Ying
    Zhang, Xuming
    Ibrahim, Jamesh Mohammed
    Chu, Paul K.
    CORROSION SCIENCE, 2013, 68 : 279 - 285
  • [10] A Detection Method Based on Behavior-path Representation Against Application-layer DDoS Attacks
    Zhao, Yuntao
    Cui, Wenjie
    Feng, Yongxin
    International Journal of Network Security, 2021, 23 (02) : 229 - 237