A TRAFFIC COHERENCE ANALYSIS MODEL FOR DDOS ATTACK DETECTION

被引:0
|
作者
Rahmani, Hamza [1 ]
Sahli, Nabil [1 ]
Kammoun, Farouk [1 ]
机构
[1] Natl Sch Comp Sci, CRISTAL Lab, Manouba 2010, Tunisia
关键词
Distributed denial of service; Probability distribution; Joint probability; Stochastic process; Central limit theorem;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Distributed Denial of Service (DDoS) attack is a critical threat to the Internet by severely degrading its performance. DDoS attack can be considered a system anomaly or misuse from which abnormal behaviour is imposed on network traffic. Network traffic characterization with behaviour modelling could be a good indication of attack detection witch can be performed via abnormal behaviour identification. In this paper, we will focus on the design and evaluation of the statistically automated attack detection. Our key idea is that contrary to DDoS traffic, flash crowd is characterized by a large increase not only in the number of packets but also in the number of IP connexions. The joint probability between the packet arrival process and the number of IP connexions process presents a good estimation of the degree of coherence between these two processes. Statistical distances between an observation and a reference time windows are computed for joint probability values. We show and illustrate that anomalously large values observed on these distances betray major changes in the statistics of Internet time series and correspond to the occurrences of illegitimate anomalies.
引用
收藏
页码:148 / 154
页数:7
相关论文
共 50 条
  • [31] Belief-DDoS: stepping up DDoS attack detection model using DBN algorithm
    Wanda P.
    Hiswati M.E.
    International Journal of Information Technology, 2024, 16 (1) : 271 - 278
  • [32] Global detection of DDoS attack based on time and frequency analysis
    Hua, Luo
    Hu, Guang-Min
    Yao, Xing-Miao
    2007 INTERNATIONAL CONFERENCE ON COMMUNICATIONS, CIRCUITS AND SYSTEMS PROCEEDINGS, VOLS 1 AND 2: VOL 1: COMMUNICATION THEORY AND SYSTEMS; VOL 2: SIGNAL PROCESSING, COMPUTATIONAL INTELLIGENCE, CIRCUITS AND SYSTEMS, 2007, : 462 - +
  • [33] Online Internet Traffic Monitoring and DDoS Attack Detection Using Big Data Frameworks
    Zhou, Baojun
    Li, Jie
    Ji, Yusheng
    Guizani, Mohsen
    2018 14TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2018, : 1507 - 1512
  • [34] Proactive DDoS Attack Detection and Isolation
    Kansal, Vaishali
    Dave, Mayank
    2017 INTERNATIONAL CONFERENCE ON COMPUTER, COMMUNICATIONS AND ELECTRONICS (COMPTELIX), 2017, : 334 - 338
  • [35] A novel DDoS attack detection method
    Liu, Y. (zhujq@jlu.edu.cn), 2013, Binary Information Press, P.O. Box 162, Bethel, CT 06801-0162, United States (09):
  • [36] Spatial Correlation Detection of DDoS Attack
    Li, Zonglin
    Hu, Guangming
    Yao, Xingmiao
    2009 INTERNATIONAL CONFERENCE ON COMMUNICATIONS, CIRCUITS AND SYSTEMS PROCEEDINGS, VOLUMES I & II: COMMUNICATIONS, NETWORKS AND SIGNAL PROCESSING, VOL I/ELECTRONIC DEVICES, CIRUITS AND SYSTEMS, VOL II, 2009, : 304 - 308
  • [37] DeepDDoS: Online DDoS Attack Detection
    Shi, Zhenping
    Li, Jie
    Wu, Chentao
    2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
  • [38] DDoS Attack Detection and Classification Using Hybrid Model for Multicontroller SDN
    Gebremeskel, Tewelde Gebremedhin
    Gemeda, Ketema Adere
    Krishna, T. Gopi
    Ramulu, Perumalla Janaki
    Wireless Communications and Mobile Computing, 2023, 2023
  • [39] A Runtime DDoS Attack Detection Technique Based on Stochastic Mathematical Model
    Farias, Euclides Peres, Jr.
    Jacinto Tavares, Allainn Christiam
    Nogueira, Michele
    2023 IEEE LATIN-AMERICAN CONFERENCE ON COMMUNICATIONS, LATINCOM, 2023,
  • [40] An Evolutionary SVM Model for DDOS Attack Detection in Software Defined Networks
    Sahoo, Kshira Sagar
    Tripathy, Bata Krishna
    Naik, Kshirasagar
    Ramasubbareddy, Somula
    Balusamy, Balamurugan
    Khari, Manju
    Burgos, Daniel
    IEEE ACCESS, 2020, 8 : 132502 - 132513