Entropy Based Detection of DDoS Attacks in Packet Switching Network Models

被引:0
|
作者
Lawniczak, Anna T. [1 ]
Wu, Hao [1 ]
Di Stefano, Bruno [2 ]
机构
[1] Univ Guelph, Dept Math & Stat, Guelph, ON N1G 2W1, Canada
[2] Nuptek Syst Ltd, Toronto, ON M5R 3M6, Canada
来源
COMPLEX SCIENCES, PT 2 | 2009年 / 5卷
基金
加拿大自然科学与工程研究理事会;
关键词
distributed denial of service attack; packet switching network; entropy;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Distributed denial-of-service (DDoS) attacks are network-wide attacks that cannot be detected or stopped easily. They affect "natural" spatio-temporal packet traffic patterns, i.e. "natural distributions" of packets passing through the routers. Thus, they affect "natural" information entropy profiles, a sort of "fingerprints", of normal packet traffic. We study if by monitoring information entropy of packet traffic through selected routers one may detect DDoS attacks or anomalous packet traffic in packet switching network (PSN) models. Our simulations show that the considered DDoS attacks of "ping" type cause shifts in information entropy profiles of packet traffic monitored even at small sets of routers and that it is easier to detect these shifts if static routing is used instead of dynamic routing. Thus, network-wide monitoring of information entropy of packet traffic at properly selected routers may provide means for detecting DDoS attacks and other anomalous packet traffics.
引用
收藏
页码:1810 / +
页数:2
相关论文
共 50 条
  • [31] DDoS Detection and Prevention Based on Joint Entropy and Conditional Entropy
    Gu Yonghao
    Wu Weiming
    ADVANCED MATERIALS AND COMPUTER SCIENCE, PTS 1-3, 2011, 474-476 : 2129 - 2133
  • [32] Evaluation of Flow and Average Entropy Based Detection Mechanism for DDoS Attacks using NS-2
    Vadehra, Raghav
    Singh, Manjit
    Singh, Butta
    Chowdhary, Nitika
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2016, 10 (05): : 139 - 145
  • [33] Evaluation of Takagi-Sugeno-Kang Fuzzy Method in Entropy-based Detection of DDoS attacks
    Petkovic, Miodrag
    Basicevic, Ilija
    Kukolj, Dragan
    Popovic, Miroslav
    COMPUTER SCIENCE AND INFORMATION SYSTEMS, 2018, 15 (01) : 139 - 162
  • [34] Riemannian manifold on stream data: Fourier transform and entropy-based DDoS attacks detection method
    Liu, Zhen
    Hu, Changzhen
    Shan, Chun
    COMPUTERS & SECURITY, 2021, 109
  • [35] Detection System of HTTP DDoS Attacks in a Cloud Environment Based on Information Theoretic Entropy and Random Forest
    Idhammad, Mohamed
    Afdel, Karim
    Belouch, Mustapha
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [36] Detection of Burst Header Packet Flooding Attacks via Optimization based Deep Learning Framework in Optical Burst Switching Network
    Vahalingam, Ramkumar
    Rajagopal, Bhavani
    Arumugam, Sathishkumar
    Pandian, Muneeswari Ganes
    INFORMACIJE MIDEM-JOURNAL OF MICROELECTRONICS ELECTRONIC COMPONENTS AND MATERIALS, 2023, 53 (03): : 167 - 176
  • [37] An IP-traceback-based packet filtering scheme for eliminating DDoS attacks
    Wang, Yulong
    Sun, Rui
    Journal of Networks, 2014, 9 (04) : 874 - 881
  • [38] A Method Based on AMHI for DDoS Attacks Detection and Defense
    Bu, Kai
    Sun, Zhixin
    PROCEEDINGS OF THE 9TH INTERNATIONAL CONFERENCE FOR YOUNG COMPUTER SCIENTISTS, VOLS 1-5, 2008, : 1571 - 1576
  • [39] Cooperative Detection Method for DDoS Attacks Based on Blockchain
    Cheng, Jieren
    Yao, Xinzhi
    Li, Hui
    Lu, Hao
    Xiong, Naixue
    Luo, Ping
    Liu, Le
    Guo, Hao
    Feng, Wen
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2022, 43 (01): : 103 - 117
  • [40] Anomaly Detection for DDoS Attacks Based on Gini Coefficient
    Liu, Yun
    Jiang, Siyu
    Huang, Jiuming
    PROCEEDINGS OF THE 2013 INTERNATIONAL CONFERENCE ON ADVANCED ICT AND EDUCATION, 2013, 33 : 649 - 654