Adaptive Response System for Distributed Denial-of-Service Attacks

被引:5
|
作者
Thing, Vrizlynn L. L.
Sloman, Morris
Dulay, Naranker
机构
来源
2009 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2009) VOLS 1 AND 2 | 2009年
关键词
Distributed Denial of Service; Adaptive Response System;
D O I
10.1109/INM.2009.5188887
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This dissertation presents a Distributed denial-of-service Adaptive ResponsE (DARE) system, capable of executing appropriate detection and mitigation responses automatically and adaptively according to the attacks. It supports easy integration of distributed modules for both signature-based and anomaly-based detection. Additionally, the innovative design of DARE's individual components takes into consideration the strengths and weaknesses of existing defence mechanisms, and the characteristics and possible future mutations of DDoS attacks. The distributed components work together interactively to adapt detection and response according to the attack types. Experiments on DARE show that the attack detection and mitigation were successfully completed within seconds, with about 60% to 86% of the attack traffic being dropped, while availability for legitimate and new legitimate requests was maintained. DARE is able to detect and trigger appropriate responses in accordance to the attacks being launched with high accuracy, effectiveness and efficiency. The dissertation is available at http://pubs.doc.ic.ac.ukNrizlynnThing-PhD-Thesis-2008/VrizlynnThing-PhD-Thesis-2008.pdf.
引用
收藏
页码:809 / 814
页数:6
相关论文
共 50 条
  • [41] Distributed Denial of Service is a Scalability Problem
    Chung, Yoo
    ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2012, 42 (01) : 69 - 71
  • [42] Distributed denial of service issues and defense strategies
    Park, J
    WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL 1, PROCEEDINGS: INFORMATION SYSTEMS DEVELOPMENT, 2001, : 513 - 516
  • [43] A detection design for distributed denial of service attack
    Fujita, N
    6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL I, PROCEEDINGS: INFORMATION SYSTEMS DEVELOPMENT I, 2002, : 78 - 82
  • [44] Distributed Denial of Service: Attack techniques and mitigation
    Vanitha, K. S.
    Uma, S. V.
    Mahidhar, S. K.
    2017 2ND INTERNATIONAL CONFERENCE ON CIRCUITS, CONTROLS, AND COMMUNICATIONS (CCUBE), 2017, : 226 - 231
  • [45] Coordinated Defense of Distributed Denial of Service Attacks against the Multi-Area Load Frequency Control Services
    Wang, Qi
    Tai, Wei
    Tang, Yi
    Zhu, Hong
    Zhang, Ming
    Zhou, Dongxu
    ENERGIES, 2019, 12 (13)
  • [46] A Scheme for Preventing Denial of Service Attacks on Wireless Sensor Networks
    Gill, Khusvinder
    Yang, Shuang-Hua
    IECON: 2009 35TH ANNUAL CONFERENCE OF IEEE INDUSTRIAL ELECTRONICS, VOLS 1-6, 2009, : 2455 - +
  • [47] A Proposal of an Extended Method of IP Trace-Back for Distributed Denial of Service Attacks Using a Dynamic Marking Scheme
    Koga, Katsuhiro
    Okazaki, Naonobu
    Watanabe, Akira
    Park, Mi Rang
    ELECTRONICS AND COMMUNICATIONS IN JAPAN, 2011, 94 (12) : 29 - 44
  • [48] A simulation work for generating a novel dataset to detect distributed denial of service attacks on Vehicular Ad hoc NETwork systems
    Alhaidari, Fahd A.
    Alrehan, Alia Mohammed
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2021, 17 (03)
  • [49] Optimal deployment of virtual network functions for securingtelecommunication networks against distributed denial of service attacks: Arobust optimization approach
    Gicquel, Celine
    Vanier, Sonia
    Papadimitriou, Alexandros
    COMPUTERS & OPERATIONS RESEARCH, 2022, 146
  • [50] Attack Detection of Distributed Denial of Service Based on Splunk
    Su, Te-Jen
    Wang, Shih-Ming
    Chen, Yi-Feng
    Liu, Chao-Liang
    PROCEEDINGS OF THE IEEE INTERNATIONAL CONFERENCE ON ADVANCED MATERIALS FOR SCIENCE AND ENGINEERING (IEEE-ICAMSE 2016), 2016, : 397 - 400