Adaptive Response System for Distributed Denial-of-Service Attacks

被引:5
|
作者
Thing, Vrizlynn L. L.
Sloman, Morris
Dulay, Naranker
机构
来源
2009 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009) VOLS 1 AND 2 | 2009年
关键词
Distributed Denial of Service; Adaptive Response System;
D O I
10.1109/INM.2009.5188887
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This dissertation presents a Distributed denial-of-service Adaptive ResponsE (DARE) system, capable of executing appropriate detection and mitigation responses automatically and adaptively according to the attacks. It supports easy integration of distributed modules for both signature-based and anomaly-based detection. Additionally, the innovative design of DARE's individual components takes into consideration the strengths and weaknesses of existing defence mechanisms, and the characteristics and possible future mutations of DDoS attacks. The distributed components work together interactively to adapt detection and response according to the attack types. Experiments on DARE show that the attack detection and mitigation were successfully completed within seconds, with about 60% to 86% of the attack traffic being dropped, while availability for legitimate and new legitimate requests was maintained. DARE is able to detect and trigger appropriate responses in accordance to the attacks being launched with high accuracy, effectiveness and efficiency. The dissertation is available at http://pubs.doc.ic.ac.ukNrizlynnThing-PhD-Thesis-2008/VrizlynnThing-PhD-Thesis-2008.pdf.
引用
收藏
页码:809 / 814
页数:6
相关论文
共 50 条
  • [1] On the Move: Evading Distributed Denial-of-Service Attacks
    Stavrou, Angelos
    Fleck, Daniel
    Kolias, Constantinos
    COMPUTER, 2016, 49 (03) : 104 - 107
  • [2] Blockchain Signaling System (BloSS): Cooperative Signaling of Distributed Denial-of-Service Attacks
    Rodrigues, Bruno
    Scheid, Eder
    Killer, Christian
    Franco, Muriel
    Stiller, Burkhard
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2020, 28 (04) : 953 - 989
  • [3] Blockchain Signaling System (BloSS): Cooperative Signaling of Distributed Denial-of-Service Attacks
    Bruno Rodrigues
    Eder Scheid
    Christian Killer
    Muriel Franco
    Burkhard Stiller
    Journal of Network and Systems Management, 2020, 28 : 953 - 989
  • [4] Securing wireless mobile nodes from distributed denial-of-service attacks
    Varadharajan, Vijay
    Tupakula, Udaya
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2015, 27 (15) : 3794 - 3815
  • [5] Distributed Detection and Response for the Mitigation of Distributed Denial of Service Attacks
    Grant, D. C.
    2018 32ND INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2018, : 495 - 497
  • [6] Microsoft vs. Apple: Resilience against Distributed Denial-of-Service Attacks
    Kumar, Sanjeev
    Surisetty, Sirisha
    IEEE SECURITY & PRIVACY, 2012, 10 (02) : 60 - 64
  • [7] Estimates of success rates of Denial-of-Service attacks
    Sommestad, Teodor
    Holm, Hannes
    Ekstedt, Mathias
    TRUSTCOM 2011: 2011 INTERNATIONAL JOINT CONFERENCE OF IEEE TRUSTCOM-11/IEEE ICESS-11/FCST-11, 2011, : 21 - 28
  • [8] Design and development of proactive solutions for mitigating denial-of-service attacks
    Nagesh, H. R.
    Sekaran, K. Chandra
    2006 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATIONS, VOLS 1 AND 2, 2007, : 152 - +
  • [9] A BitTorrent-driven distributed denial-of-service attack
    Harrington, Jerome
    Kuwanoe, Corey
    Zou, Cliff C.
    2007 THIRD INTERNATIONAL CONFERENCE ON SECURITY AND PRIVACY IN COMMUNICATION NETWORKS AND WORKSHOPS, 2007, : 261 - 268
  • [10] An effective defence mechanism for Distributed Denial-of-Service (DDoS) attacks using router-based techniques
    Kumarasamy, Saravanan
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURES, 2010, 6 (01) : 73 - 80