HollywooDDoS: Detecting Volumetric Attacks in Moving Images of Network Traffic

被引:1
作者
Kopmann, Samuel [1 ]
Heseding, Hauke [1 ,2 ]
Zitterbart, Martina [1 ,2 ]
机构
[1] Karlsruhe Inst Technol, Inst Telemat, Karlsruhe, Germany
[2] KASTEL Secur Res Labs, Karlsruhe, Germany
来源
PROCEEDINGS OF THE 2022 47TH IEEE CONFERENCE ON LOCAL COMPUTER NETWORKS (LCN 2022) | 2022年
关键词
DDoS; Intrusion Detection; CNNs; Traffic Monitoring; Image Classification;
D O I
10.1109/LCN53696.2022.9843465
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Fast detection of Distributed Denial of Service attacks is key for establishing appropriate countermeasures in order to protect potential targets. HollywooDDoS applies well-known techniques from movie classification to the challenge of DDoS detection. The proposed approach utilizes a traffic aggregation scheme representing traffic volumes between IP subnets as two-dimensional images, while preserving detection relevant traffic characteristics. These images serve as input for a convolutional neural network, learning IP address space distributions of both background and attack traffic intensities. It is shown that a real-world DDoS attack can be precisely detected on the time scale of milliseconds. We evaluate classification of images without temporal information about attack traffic development to outline the impact of image resolution and aggregation time frames. We then show that attack detection further improves by 17% when utilizing a consecutive series of images capturing traffic dynamics.
引用
收藏
页码:90 / 97
页数:8
相关论文
共 50 条
  • [31] Detecting the impact of software vulnerability on attacks: A case study of network telescope scans
    Houmz, Abdellah
    Mezzour, Ghita
    Zkik, Karim
    Ghogho, Mounir
    Benbrahim, Houda
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2021, 195
  • [32] Detecting Cybersecurity Attacks Using Different Network Features with LightGBM and XGBoost Learners
    Leevy, Joffrey L.
    Hancock, John
    Zuech, Richard
    Khoshgoftaar, Taghi M.
    2020 IEEE SECOND INTERNATIONAL CONFERENCE ON COGNITIVE MACHINE INTELLIGENCE (COGMI 2020), 2020, : 190 - 197
  • [33] Detecting DDoS Attacks on the Network Edge: An Information-Theoretic Correlation Analysis
    Araki, Ryosuke
    Sahoo, Kshira Sagar
    Taenaka, Yuzo
    Kadobayashi, Youki
    Elmroth, Erik
    Bhuyan, Monowar
    2023 IEEE 22ND INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, BIGDATASE, CSE, EUC, ISCI 2023, 2024, : 485 - 494
  • [34] Using Jpcap API to Monitor, Analyse and Report Network Traffic for DDoS Attacks
    Kumar, Dileep G.
    Rao, C. V. Guru
    Singh, Manoj Kumar
    Ahmad, Farid
    2014 14TH INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ITS APPLICATIONS (ICCSA), 2014, : 35 - 39
  • [35] Predicting Network Attacks with CNN by Constructing Images from NetFlow Data
    Liu, Xiang
    Tang, Ziyang
    Yang, Baijian
    2019 IEEE 5TH INTL CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY) / IEEE INTL CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING (HPSC) / IEEE INTL CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2019, : 61 - 66
  • [36] A Bootstrap-based Simple Probability Model for Classifying Network Traffic and Detecting Network Intrusion
    Yun Wang
    Inyoung Kim
    Security Journal, 2008, 21 : 278 - 290
  • [37] Detecting Moving Wildlife Using the Time Difference between Two Thermal Airborne Images
    Oishi, Yu
    Yoshida, Natsuki
    Oguma, Hiroyuki
    REMOTE SENSING, 2024, 16 (08)
  • [38] A Bootstrap-based Simple Probability Model for Classifying Network Traffic and Detecting Network Intrusion
    Wang, Yun
    Kim, Inyoung
    SECURITY JOURNAL, 2008, 21 (04) : 278 - 290
  • [39] Detecting and classifying man-in-the-middle attacks in the private area network of smart grids
    Elrawy, Mohamed Faisal
    Hadjidemetriou, Lenos
    Laoudias, Christos
    Michael, Maria K.
    SUSTAINABLE ENERGY GRIDS & NETWORKS, 2023, 36
  • [40] Importance Analysis of Micro-Flow Independent Features for Detecting Distributed Network Attacks
    Kopmann, Samuel
    Zitterbart, Martina
    IEEE Transactions on Network and Service Management, 2024, 21 (06): : 5947 - 5957