Collaborative anomaly-based detection of large-scale internet attacks

被引:14
|
作者
Gamer, Thomas [1 ]
机构
[1] KIT, Inst Telemat, D-76131 Karlsruhe, Germany
关键词
Attack detection; Collaboration; Large-scale attacks; INTRUSION;
D O I
10.1016/j.comnet.2011.08.015
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet infrastructure and Internet-based business today still suffer from various attacks like Distributed Denial-of-Service (DDoS) attacks or worm propagations. A necessary first step in order to cope with such large-scale attacks is to provide an Internet-wide detection of such ongoing attacks, i.e., a detection that is not limited to single detection systems only. Therefore, collaborative detection systems were developed in the past. They, however, often rely on close trust relationships, which only rarely are available in the Internet. This means that the scope of detection is limited to only a small part of the Internet, mostly to a single administrative domain. This paper, therefore, introduces our newly developed collaborative attack detection that facilitates collaboration beyond domain boundaries without requiring close trust relationships. In-network detection systems are explicitly considered, too. Such systems are located on routers in the core of the Internet and are characterized by limited resources available for detection. Finally, a detailed simulative levaluation of our proposed solution is presented. (C) 2011 Elsevier B.V. All rights reserved.
引用
收藏
页码:169 / 185
页数:17
相关论文
共 50 条
  • [21] An algorithm for anomaly-based botnet detection
    Binkley, James R.
    Singh, Suresh
    USENIX ASSOCIATION PROCEEDINGS OF THE 2ND WORKSHOP ON STEPS TO REDUCING UNWANTED TRAFFIC ON THE INTERNET, 2006, : 43 - +
  • [22] Unknown Attacks Detection Using Feature Extraction from Anomaly-based IDS Alerts
    Sato, Masaaki
    Yamaki, Hirofumi
    Takakura, Hiroki
    2012 IEEE/IPSJ 12TH INTERNATIONAL SYMPOSIUM ON APPLICATIONS AND THE INTERNET (SAINT), 2012, : 273 - 277
  • [23] Benchmarking anomaly-based detection systems
    Maxion, RA
    Tan, KMC
    DSN 2000: INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2000, : 623 - 630
  • [24] LogEvent2vec: LogEvent-to-Vector Based Anomaly Detection for Large-Scale Logs in Internet of Things
    Wang, Jin
    Tang, Yangning
    He, Shiming
    Zhao, Changqing
    Sharma, Pradip Kumar
    Alfarraj, Osama
    Tolba, Amr
    SENSORS, 2020, 20 (09)
  • [25] Anomaly detection in large-scale data stream networks
    Duc-Son Pham
    Venkatesh, Svetha
    Lazarescu, Mihai
    Budhaditya, Saha
    DATA MINING AND KNOWLEDGE DISCOVERY, 2014, 28 (01) : 145 - 189
  • [26] Robust Anomaly Detection for Large-Scale Sensor Data
    Chakrabarti, Aniket
    Marwah, Manish
    Arlitt, Martin
    BUILDSYS'16: PROCEEDINGS OF THE 3RD ACM CONFERENCE ON SYSTEMS FOR ENERGY-EFFCIENT BUILT ENVIRONMENTS, 2016, : 31 - 40
  • [27] Spatiotemporal Anomaly Detection for Large-Scale Sensor Data
    Zhao, Minglu
    Takizawa, Hiroyuki
    Soma, Tomoya
    PAAP 2021: 2021 12TH INTERNATIONAL SYMPOSIUM ON PARALLEL ARCHITECTURES, ALGORITHMS AND PROGRAMMING, 2021, : 162 - 168
  • [28] Anomaly detection in large-scale data stream networks
    Duc-Son Pham
    Svetha Venkatesh
    Mihai Lazarescu
    Saha Budhaditya
    Data Mining and Knowledge Discovery, 2014, 28 : 145 - 189
  • [29] Subspace-Based Anomaly Detection for Large-Scale Campus Network Traffic
    Zhao, Xiaofeng
    Wu, Qiubing
    JOURNAL OF APPLIED MATHEMATICS, 2023, 2023
  • [30] An audio-based framework for anomaly detection in large-scale structural testing
    Munko, Marek J.
    Cuthill, Fergus
    Camacho, Miguel A. Valdivia
    Bradaigh, Conchur M. o
    Dubon, Sergio Lopez
    ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2025, 142