Entropy Based Detection of DDoS Attacks in Packet Switching Network Models

被引:0
作者
Lawniczak, Anna T. [1 ]
Wu, Hao [1 ]
Di Stefano, Bruno [2 ]
机构
[1] Univ Guelph, Dept Math & Stat, Guelph, ON N1G 2W1, Canada
[2] Nuptek Syst Ltd, Toronto, ON M5R 3M6, Canada
来源
COMPLEX SCIENCES, PT 2 | 2009年 / 5卷
基金
加拿大自然科学与工程研究理事会;
关键词
distributed denial of service attack; packet switching network; entropy;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Distributed denial-of-service (DDoS) attacks are network-wide attacks that cannot be detected or stopped easily. They affect "natural" spatio-temporal packet traffic patterns, i.e. "natural distributions" of packets passing through the routers. Thus, they affect "natural" information entropy profiles, a sort of "fingerprints", of normal packet traffic. We study if by monitoring information entropy of packet traffic through selected routers one may detect DDoS attacks or anomalous packet traffic in packet switching network (PSN) models. Our simulations show that the considered DDoS attacks of "ping" type cause shifts in information entropy profiles of packet traffic monitored even at small sets of routers and that it is easier to detect these shifts if static routing is used instead of dynamic routing. Thus, network-wide monitoring of information entropy of packet traffic at properly selected routers may provide means for detecting DDoS attacks and other anomalous packet traffics.
引用
收藏
页码:1810 / +
页数:2
相关论文
共 50 条
  • [41] Entropy-Based Anomaly Detection in a Network
    Ajay Shankar Shukla
    Rohit Maurya
    Wireless Personal Communications, 2018, 99 : 1487 - 1501
  • [42] An anomaly based distributed detection system for DDoS attacks in Tier-2 ISP networks
    Abhinav Bhandari
    Krishan Kumar
    A. L. Sangal
    Sunny Behal
    Journal of Ambient Intelligence and Humanized Computing, 2021, 12 : 1387 - 1406
  • [43] An anomaly based distributed detection system for DDoS attacks in Tier-2 ISP networks
    Bhandari, Abhinav
    Kumar, Krishan
    Sangal, A. L.
    Behal, Sunny
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2021, 12 (01) : 1387 - 1406
  • [44] An Entropy-based VoIP Flooding Attacks Detection and Prevention System
    Zargar, Reihaneh Haji Mahdizdeh
    Moghaddam, Mohammad Hossein Yaghmaee
    2014 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND KNOWLEDGE ENGINEERING (ICCKE), 2014, : 691 - 696
  • [45] Detection and Mitigation of DoS and DDoS Attacks in IoT-Based Stateful SDN: An Experimental Approach
    Galeano-Brajones, Jesus
    Carmona-Murillo, Javier
    Valenzuela-Valdes, Juan F.
    Luna-Valero, Francisco
    SENSORS, 2020, 20 (03)
  • [46] Hyperband Tuned Deep Neural Network With Well Posed Stacked Sparse AutoEncoder for Detection of DDoS Attacks in Cloud
    Bhardwaj, Aanshi
    Mangat, Veenu
    Vig, Renu
    IEEE ACCESS, 2020, 8 : 181916 - 181929
  • [47] Entropy-based DDoS Attack Detection in Cluster-based Mobile Ad Hoc Networks
    Deepa
    Dhindsa, Kanwalvir Singh
    Singh, Karanbir
    AD HOC & SENSOR WIRELESS NETWORKS, 2021, 49 (3-4) : 269 - 288
  • [48] A hybrid method of entropy and SSAE-SVM based DDoS detection and mitigation mechanism in SDN
    Zhang Long
    Wang Jinsong
    COMPUTERS & SECURITY, 2022, 115
  • [49] Entropy-Based Application Layer DDoS Attack Detection Using Artificial Neural Networks
    Singh, Khundrakpam Johnson
    Thongam, Khelchandra
    De, Tanmay
    ENTROPY, 2016, 18 (10)
  • [50] E-Had: A distributed and collaborative detection framework for early detection of DDoS attacks
    Patil, Nilesh Vishwasrao
    Krishna, C. Rama
    Kumar, Krishan
    Behal, Sunny
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (04) : 1373 - 1387