共 45 条
Detection of distributed denial of service attacks using statistical pre-processor and unsupervised neural networks
被引:0
作者:
Jalili, R
[1
]
Imani-Mehr, F
[1
]
Amini, M
[1
]
Shahriari, HR
[1
]
机构:
[1] Sharif Univ Technol, Dept Comp Engn, Tehran, Iran
来源:
INFORMATION SECURITY PRACTICE AND EXPERIENCE
|
2005年
/
3439卷
关键词:
DDoS attacks;
intrusion detection system;
unsupervised neural nets;
statistical pre-processor;
D O I:
暂无
中图分类号:
TP301 [理论、方法];
学科分类号:
081202 ;
摘要:
Although the prevention of Distributed Denial of Service (DDoS) attacks is not possible, detection of such attacks plays main role in preventing their progress. In the flooding attacks, especially new sophisticated DDoS, the attacker floods the network traffic toward the target computer by sending pseudo-normal packets. Therefore, multi-purpose IDSs do not offer a good performance (and accuracy) in detecting such kinds of attacks. In this paper, a novel method for detection of DDoS attacks has been introduced based on a statistical pre-processor and an unsupervised artificial neural net. In addition, SPUNNID system has been designed based on the proposed method. The statistical pre-processing has been used to extract some statistical features of the traffic, showing the behavior of DDoS attacks. The unsupervised neural net is used to analyze and classify them as either a DDoS attack or normal. Moreover, the method has been more investigated using attacked network traffic, which has been provided from a real environment. The experimental results show that SPUNNID detects DDoS attacks accurately and efficiently.
引用
收藏
页码:192 / 203
页数:12
相关论文
共 45 条