Adaptive Response System for Distributed Denial-of-Service Attacks

被引:5
|
作者
Thing, Vrizlynn L. L.
Sloman, Morris
Dulay, Naranker
机构
来源
2009 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009) VOLS 1 AND 2 | 2009年
关键词
Distributed Denial of Service; Adaptive Response System;
D O I
10.1109/INM.2009.5188887
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This dissertation presents a Distributed denial-of-service Adaptive ResponsE (DARE) system, capable of executing appropriate detection and mitigation responses automatically and adaptively according to the attacks. It supports easy integration of distributed modules for both signature-based and anomaly-based detection. Additionally, the innovative design of DARE's individual components takes into consideration the strengths and weaknesses of existing defence mechanisms, and the characteristics and possible future mutations of DDoS attacks. The distributed components work together interactively to adapt detection and response according to the attack types. Experiments on DARE show that the attack detection and mitigation were successfully completed within seconds, with about 60% to 86% of the attack traffic being dropped, while availability for legitimate and new legitimate requests was maintained. DARE is able to detect and trigger appropriate responses in accordance to the attacks being launched with high accuracy, effectiveness and efficiency. The dissertation is available at http://pubs.doc.ic.ac.ukNrizlynnThing-PhD-Thesis-2008/VrizlynnThing-PhD-Thesis-2008.pdf.
引用
收藏
页码:809 / 814
页数:6
相关论文
共 50 条
  • [21] Optimal Monitor Placement Policy Against Distributed Denial-of-Service Attack in Datacenter
    Biswas, Rajorshi
    Wu, Jie
    Chen, Yang
    2019 RESILIENCE WEEK (RWS), 2019, : 64 - 70
  • [22] A distributed framework for distributed denial-of-service attack detection in internet of things environments using deep learning
    Silas W.A.
    Nderu L.
    Ndirangu D.
    International Journal of Web Engineering and Technology, 2024, 19 (01) : 67 - 87
  • [23] The Threat of Distributed Denial-of-Service Attack for User Equipment in 5G Networks
    Khan, Danish
    Zhou, Xujuan
    Yong, Jianming
    2022 TENTH INTERNATIONAL CONFERENCE ON ADVANCED CLOUD AND BIG DATA, CBD, 2022, : 240 - 245
  • [24] Comprehensive review on distributed denial of service attacks in wireless sensor networks
    Subramani, Shalini
    Selvi, M.
    INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2023, 20 (3-4) : 414 - 438
  • [25] Distributed denial-of-service attack detection scheme-based joint-entropy
    Rahmani, Hamza
    Sahli, Nabil
    Kamoun, Farouk
    SECURITY AND COMMUNICATION NETWORKS, 2012, 5 (09) : 1049 - 1061
  • [26] Cost-Aware Optimal Filter Assignment Policy Against Distributed Denial-of-Service Attack
    Biswas, Rajorshi
    Wu, Jie
    Srinivasan, Avinash
    2019 RESILIENCE WEEK (RWS), 2019, : 57 - 63
  • [27] Supporting security against SYN flooding attacks in distributed denial-of-service via measuring internet protocol flow information export-based traffic
    Alipour, H.
    Esmaeili, M.
    Kia, M. Kashefi
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2009, 2 (01) : 49 - 57
  • [28] A Capacity-Aware Distributed Denial-of-Service Attack in Low-Power and Lossy Networks
    Biswas, Rajorshi
    Wu, Jie
    Li, Xiuqi
    2019 IEEE 40TH SARNOFF SYMPOSIUM, 2019,
  • [29] Economic Incentive based Solution against Distributed Denial of Service Attacks for IoT Customers
    Adat, Vipindev
    Dahiya, Amrita
    Gupta, B. B.
    2018 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2018,
  • [30] A Distributed Denial of Service Testbed
    Schmidt, Desmond
    Suriadi, Suriadi
    Tickle, Alan
    Clark, Andrew
    Mohay, George
    Ahmed, Ejaz
    Mackie, James
    WHAT KIND OF INFORMATION SOCIETY? GOVERNANCE, VIRTUALITY, SURVEILLANCE, SUSTAINABILITY, RESILIENCE, 2010, 328 : 338 - 349