Detection of HTTP Flooding Attacks in Cloud Using Dynamic Entropy Method

被引:0
|
作者
T. Raja Sree
S. Mary Saira Bhanu
机构
[1] National Institute of Technology,Department of Computer Science and Engineering
关键词
HTTP flooding attack; Entropy; Sliding Window; Cloud computing; Openstack;
D O I
暂无
中图分类号
学科分类号
摘要
In recent years, cloud computing has emerged as a prominent paradigm that is used to provide cloud services to users. The technology enables the users to access the services by renting multiple virtual instances running in cloud on the basis of their demand. The attackers may send enormous volumes of malicious HTTP requests to the victims to exhaust the resources and services running in cloud. The techniques generally used for the detection of HTTP flooding attacks are pattern analysis, packet filtering methods, network-based access control, cloud trace-back methods, etc. These techniques use existing rules to identify traffic patterns to determine the attacks. However, these methods do not adapt to the dynamic and flexibility of the cloud models and its changing network traffic behavior and also suffer from spoofing attacks. So, in order to overcome the drawbacks, it is necessary to keep track of all the virtual instances running in cloud using the log trace and then monitor the status of the virtual machines in real time. Hence, the proposed method detects the flooding attacks by reading the network logs, and keeps track of the alive states, i.e., active IPs of the incoming requests by varying the window size (number of time slots) which depends on traffic load, and by measuring the sliding window of dynamic entropy. The experimental results of the proposed method are compared with the existing methods viz., static entropy and adaptive negative selection algorithm, and it was observed that the proposed method detects the HTTP flooding attacks with high probability, reduces false alarms and enhances performance even in the case of spoofing attacks.
引用
收藏
页码:6995 / 7014
页数:19
相关论文
共 50 条
  • [1] Detection of HTTP Flooding Attacks in Cloud Using Dynamic Entropy Method
    Sree, T. Raja
    Bhanu, S. Mary Saira
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2018, 43 (12) : 6995 - 7014
  • [2] Detection of HTTP flooding attacks in cloud using fuzzy bat clustering
    Sree, T. Raja
    Bhanu, S. Mary Saira
    NEURAL COMPUTING & APPLICATIONS, 2020, 32 (13): : 9603 - 9619
  • [3] Detection of HTTP flooding attacks in cloud using fuzzy bat clustering
    T. Raja Sree
    S. Mary Saira Bhanu
    Neural Computing and Applications, 2020, 32 : 9603 - 9619
  • [4] HAP: detection of HTTP flooding attacks in cloud using diffusion map and affinity propagation clustering
    Sree, Thankaraja Raja
    Bhanu, Somasundaram Mary Saira
    IET INFORMATION SECURITY, 2019, 13 (03) : 188 - 200
  • [5] An OpenStack based cloud testbed framework for evaluating HTTP flooding attacks
    Dhanapal, A.
    Nithyanandam, P.
    WIRELESS NETWORKS, 2021, 27 (08) : 5491 - 5501
  • [6] An OpenStack based cloud testbed framework for evaluating HTTP flooding attacks
    A. Dhanapal
    P. Nithyanandam
    Wireless Networks, 2021, 27 : 5491 - 5501
  • [7] Detection System of HTTP DDoS Attacks in a Cloud Environment Based on Information Theoretic Entropy and Random Forest
    Idhammad, Mohamed
    Afdel, Karim
    Belouch, Mustapha
    SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [8] An HTTP Flooding detection method based on browser behavior
    Lu, Wei-Zhou
    Yu, Shun-Zheng
    2006 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PTS 1 AND 2, PROCEEDINGS, 2006, : 1151 - 1154
  • [9] The HTTP Flooding Attack Detection to Secure and Safeguard Online Applications in the Cloud
    Dhanapal, A.
    Nithyanandam, P.
    INTERNATIONAL JOURNAL OF INFORMATION SYSTEM MODELING AND DESIGN, 2019, 10 (03) : 41 - 58
  • [10] THE SLOW HTTP DDOS ATTACKS: DETECTION, MITIGATION AND PREVENTION IN THE CLOUD ENVIRONMENT
    Dhanapal, A.
    Nithyanandam, P.
    SCALABLE COMPUTING-PRACTICE AND EXPERIENCE, 2019, 20 (04): : 669 - 685