跳到主要导航 跳到搜索 跳到主要内容

A flooding-based DoS/DDoS detecting algorithm based on traffic measurement and prediction

  • Xi'an Jiaotong University

科研成果: 书/报告/会议事项章节会议稿件同行评审

1 引用 (Scopus)

摘要

This paper analyzed the features of the flooding-based DoS/DDoS attack traffic, and proposed a novel real-time algorithm for detecting such DoS/DDoS attacks. In order to shorten the delay of detection, short-term traffic prediction was introduced, and prediction values were used in the detecting process. Though we use real-time traffic data to calculate the mean and variance, few periods of data need to be stored because the algorithm is a recurring process, therefore the occupied storage space is less. Moreover, the complex and cost of the recurring process is less than calculating the whole sequence, so the load of the server would not increase much. Although we focus our research on detecting flooding-based DoS/DDoS attacks, the simulation shows that the approach also can deal with DDoS attacks that zombies start without simultaneousness.

源语言英语
主期刊名Advances in Information and Computer Security - First International Workshop on Security, IWSEC 2006, Proceedings
出版商Springer Verlag
252-267
页数16
ISBN(印刷版)3540476997, 9783540476993
出版状态已出版 - 2006
活动1st International Workshop on Security, IWSEC 2006 - Kyoto, 日本
期限: 23 10月 200624 10月 2006

出版系列

姓名Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
4266 LNCS
ISSN(印刷版)0302-9743
ISSN(电子版)1611-3349

会议

会议1st International Workshop on Security, IWSEC 2006
国家/地区日本
Kyoto
时期23/10/0624/10/06

学术指纹

探究 'A flooding-based DoS/DDoS detecting algorithm based on traffic measurement and prediction' 的科研主题。它们共同构成独一无二的指纹。

引用此