DDoS Flood Attack Detection Based On Fractal Parameters

被引:0
|
作者
Xia, Zhengmin [1 ]
Lu, Songnian [2 ]
Li, Jianhua [2 ]
机构
[1] Shanghai Jiao Tong Univ, Dept Elect Engn, Shanghai 200030, Peoples R China
[2] Shanghai Jiao Tong Univ, Sch Informat Secur Engn, Dept Elect Engn, Shanghai, Peoples R China
基金
国家高技术研究发展计划(863计划);
关键词
network security; DDoS flood attack; statistical anomaly detection; change point detection;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Distributed denial-of-service (DDoS) flood attack is one of the most popular techniques taken by the hackers to threaten the availability and stability of the Internet. To ensure network usability and reliability, accurate detection of this kind of attack is critical. In this paper, we propose a statistical DDoS flood attack detection method by passively monitoring the abrupt change of network traffic fractal parameters: fractal dimension D and Hurst parameter H. Specifically, we use an autoregressive system to estimate the parameters D and H of normal traffic which are slow changing. If the actual parameters D and H vary significantly from the estimation ones, we assume DDoS flood attack happens. Meanwhile, we propose a maximum likelihood estimate-based detection method to determine the change point of parameters D and H that indicate the occurrence of DDoS flood attack. The test results based on the DARPA intrusion detection evaluation data sets show that both the parameters D and H can indicate the DDoS flood attack effectively.
引用
收藏
页数:5
相关论文
共 50 条
  • [1] Enhancing DDoS Flood Attack Detection via Intelligent Fuzzy Logic
    Xia, Zhengmin
    Lu, Songnian
    Li, Jianhua
    Tang, Junhua
    INFORMATICA-JOURNAL OF COMPUTING AND INFORMATICS, 2010, 34 (04): : 497 - 507
  • [2] Enhancing DDoS flood attack detection via intelligent fuzzy logic
    Xia, Zhengmin
    Lu, Songnian
    Li, Jianhua
    Tang, Junhua
    Informatica (Ljubljana), 2010, 34 (04) : 497 - 507
  • [3] Detection of Variations of Local Irregularity of Traffic under DDOS Flood Attack
    Li, Ming
    Zhao, Wei
    MATHEMATICAL PROBLEMS IN ENGINEERING, 2008, 2008
  • [4] Machine Learning Based DDoS Attack Detection
    Ajeetha, G.
    Priya, Madhu G.
    2019 INNOVATIONS IN POWER AND ADVANCED COMPUTING TECHNOLOGIES (I-PACT), 2019,
  • [5] DDoS attack detection based on RLT features
    Xu, Tu
    He, Dake
    Luo, Yu
    CIS: 2007 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PROCEEDINGS, 2007, : 697 - 701
  • [6] TCP and HTTP Flood DDOS Attack Analysis and Detection for space ground Network
    Shaaban, Eng Ahmed Ramzy
    Abdelwaness, Essam
    Hussein, Mohamed
    2019 IEEE INTERNATIONAL CONFERENCE OF VEHICULAR ELECTRONICS AND SAFETY (ICVES 19), 2019,
  • [7] Efficient DDoS flood attack detection using dynamic thresholding on flow-based network traffic
    David, Jisa
    Thomas, Ciza
    COMPUTERS & SECURITY, 2019, 82 : 284 - 295
  • [8] An Efficient DDoS TCP Flood Attack Detection and Prevention System in a Cloud Environment
    Sahi, Aqeel
    Lai, David
    Li, Yan
    Diykh, Mohammed
    IEEE ACCESS, 2017, 5 : 6036 - 6048
  • [9] DDoS Attack Algorithm using ICMP Flood
    Gupta, Neha
    Jain, Ankur
    Saini, Pranav
    Gupta, Vaibhav
    PROCEEDINGS OF THE 10TH INDIACOM - 2016 3RD INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT, 2016, : 4082 - 4084
  • [10] A MSPCA based Intrusion Detection Algorithm for Detection of DDoS Attack
    Chen, Zhaomin
    Yeo, Chai Kiat
    Francis, Bu Sung Lee
    Lau, Chiew Tong
    2015 IEEE/CIC INTERNATIONAL CONFERENCE ON COMMUNICATIONS IN CHINA (ICCC), 2015,