首页 | 本学科首页   官方微博 | 高级检索  
     


Robust and efficient detection of DDoS attacks for large-scale internet
Authors:Kejie  Dapeng  Jieyan  Sinisa  Antonio
Affiliation:aDepartment of Electrical and Computer Engineering at the University of Puerto Rico at Mayagüez, Mayagüez, PR 00681, United States;bDepartment of Electrical and Computer Engineering, University of Florida, Gainesville, FL 32611, United States;cComputer Vision and Robotics Laboratory, University of Illinois at Urbana-Champaign, Urbana, IL 61801, United States;dNarus, Inc., 500 Logue Avenue, Mountain View, CA 94043, United States
Abstract:In recent years, distributed denial of service (DDoS) attacks have become a major security threat to Internet services. How to detect and defend against DDoS attacks is currently a hot topic in both industry and academia. In this paper, we propose a novel framework to robustly and efficiently detect DDoS attacks and identify attack packets. The key idea of our framework is to exploit spatial and temporal correlation of DDoS attack traffic. In this framework, we design a perimeter-based anti-DDoS system, in which traffic is analyzed only at the edge routers of an internet service provider (ISP) network. Our framework is able to detect any source-address-spoofed DDoS attack, no matter whether it is a low-volume attack or a high-volume attack. The novelties of our framework are (1) temporal-correlation based feature extraction and (2) spatial-correlation based detection. With these techniques, our scheme can accurately detect DDoS attacks and identify attack packets without modifying existing IP forwarding mechanisms at routers. Our simulation results show that the proposed framework can detect DDoS attacks even if the volume of attack traffic on each link is extremely small. Especially, for the same false alarm probability, our scheme has a detection probability of 0.97, while the existing scheme has a detection probability of 0.17, which demonstrates the superior performance of our scheme.
Keywords:Distributed denial of service (DDoS) attacks  Detection  Machine learning  Spatial correlation
本文献已被 ScienceDirect 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号