Fast Detection and Mitigation to DDoS Web Attack based on Access Frequency

被引:0
作者
Tran, Thang M. [1 ]
Khanh-Van Nguyen [1 ]
机构
[1] Hanoi Univ Sci & Technol, Sch Informat Technol & Commun, Hanoi, Vietnam
来源
2019 IEEE - RIVF INTERNATIONAL CONFERENCE ON COMPUTING AND COMMUNICATION TECHNOLOGIES (RIVF) | 2019年
关键词
DDoS Attacks; DDoS Detection and Mitigation; Access Frequency;
D O I
10.1109/rivf.2019.8713762
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
We have been investigating methods for establishing an effective, immediate defense mechanism against the DDoS attacks on Web applications via hacker botnets, in which this defense mechanism can be immediately active without preparation time, e.g. for training data, usually asked for in existing proposals. In this study, we propose a new mechanism, including new data structures and algorithms, that allow the detection and filtering of large amounts of attack packets (Web request) based on monitoring and capturing the suspect groups of source IPs that can be sending packets at similar patterns, i.e. with very high and similar frequencies. The proposed algorithm places great emphasis on reducing storage space and processing time so it is promising to be effective in real-time attack response.
引用
收藏
页码:136 / 141
页数:6
相关论文
共 50 条
[41]   Patronum: In-network Volumetric DDoS Detection and Mitigation with Programmable Switches [J].
Wu, Jiahao ;
Pan, Heng ;
Cui, Penglai ;
Huang, Yiwen ;
Zhou, Jianer ;
He, Peng ;
Li, Yanbiao ;
Li, Zhenyu ;
Xie, Gaogang .
COMPUTER SECURITY-ESORICS 2024, PT IV, 2024, 14985 :187-207
[42]   Deep learning-driven architecture for effective DDoS attack detection [J].
Geng, Lin ;
Wang, Yanyu ;
Wei, Yunsu ;
Hao, Jing .
INTERNATIONAL JOURNAL OF INTERNET PROTOCOL TECHNOLOGY, 2025, 18 (02) :99-110
[43]   Synflood Spoofed Source DDoS Attack Defense Based on Packet ID Anomaly Detection with Bloom Filter [J].
Tran Manh Thang ;
Nguyen, Chi Q. ;
Nguyen, Van K. .
PROCEEDINGS OF THE 2018 5TH ASIAN CONFERENCE ON DEFENSE TECHNOLOGY (ACDT 2018), 2018, :75-80
[44]   Study on Web DDOS Attacks Detection Using Multinomial Classifier [J].
Ajagekar, Shital K. ;
Jadhav, Vaishali .
2016 IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND COMPUTING RESEARCH, 2016, :866-870
[45]   DDoS attack detection with feature engineering and machine learning: the framework and performance evaluation [J].
Aamir, Muhammad ;
Zaidi, Syed Mustafa Ali .
INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2019, 18 (06) :761-785
[46]   DDoS attack detection with feature engineering and machine learning: the framework and performance evaluation [J].
Muhammad Aamir ;
Syed Mustafa Ali Zaidi .
International Journal of Information Security, 2019, 18 :761-785
[47]   Lightweight machine learning framework for efficient DDoS attack detection in IoT networks [J].
Nawaz, Mamoona ;
Tahira, Shireen ;
Shah, Dilawar ;
Ali, Shujaat ;
Tahir, Muhammad .
SCIENTIFIC REPORTS, 2025, 15 (01)
[48]   CNN-AttBiLSTM Mechanism: A DDoS Attack Detection Method Based on Attention Mechanism and CNN-BiLSTM [J].
Zhao, Junjie ;
Liu, Yongmin ;
Zhang, Qianlei ;
Zheng, Xinying .
IEEE ACCESS, 2023, 11 :136308-136317
[49]   Blockchain-Assisted Hybrid Harris Hawks Optimization Based Deep DDoS Attack Detection in the IoT Environment [J].
Katib, Iyad ;
Ragab, Mahmoud .
MATHEMATICS, 2023, 11 (08)
[50]   Detection of DDoS attack in IoT traffic using ensemble machine learning techniques [J].
Pandey, Nimisha ;
Mishra, Pramod Kumar .
NETWORKS AND HETEROGENEOUS MEDIA, 2023, 18 (04) :1393-1408