RAD: A Statistical Mechanism Based on Behavioral Analysis for DDoS Attack Countermeasure

服务拒绝攻击 计算机科学 应用层DDoS攻击 对策 抖动 符号 计算机安全 算法 人工智能 数学 万维网 互联网 算术 工程类 电信 航空航天工程
作者
Mosayeb Hajimaghsoodi,Rasool Jalili
出处
期刊:IEEE Transactions on Information Forensics and Security [Institute of Electrical and Electronics Engineers]
卷期号:17: 2732-2745 被引量:13
标识
DOI:10.1109/tifs.2022.3172598
摘要

Nowadays, Distributed Denial of Service (DDoS) attacks are among the most prevailing and costly attacks across the networks which challenge a variety of services. While many defense mechanisms are presented to detect and mitigate DDoS attacks, attackers constantly explore alternative approaches for orchestrating novel DDoS attacks. Distribution of the mechanism and its deployment into different zones can improve the accuracy and coverage of DDoS attack varieties. In this paper, we propose a 3-phase DDoS attack countermeasure, named $RAD$ , based on a statistical model for scoring users in order to detect DDoS attacks. In the first phase, users are classified into either suspicious or benign based on their traffic behavior, being indicated by the number of flows, packets, concurrent connections, and amount of user-generated traffic. In the second phase, we identify a potential attack state using the drop, jitter, and delay processing parameters. In the third phase, relevant policies are enforced on the suspicious class of users and its effects are assessed continuously in order to reduce false alarms. $RAD$ is evaluated through the UNB CICDDoS2019 dataset and is compared with four well-known DDoS detection algorithms. $RAD$ counters DDoS attacks with more than 80% precision, 99% recall, and 89% F1-Measure in CICDDoS2019.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
量子星尘发布了新的文献求助10
刚刚
刚刚
刚刚
2秒前
Mathilda99发布了新的文献求助10
2秒前
英姑应助Mia采纳,获得10
2秒前
英俊的铭应助理想采纳,获得10
3秒前
3秒前
江海下百川完成签到,获得积分10
3秒前
4秒前
大模型应助666888采纳,获得10
5秒前
追忆淮发布了新的文献求助10
5秒前
万能图书馆应助Lorain采纳,获得10
6秒前
李俊枫发布了新的文献求助10
6秒前
量子星尘发布了新的文献求助10
7秒前
7秒前
Novoa应助ZZX采纳,获得10
8秒前
8秒前
小爽完成签到,获得积分0
8秒前
赘婿应助MADAO采纳,获得10
8秒前
9秒前
科研通AI6应助科研通管家采纳,获得10
10秒前
科研通AI6应助科研通管家采纳,获得10
10秒前
爆米花应助科研通管家采纳,获得10
10秒前
小二郎应助科研通管家采纳,获得10
10秒前
wbshore应助科研通管家采纳,获得10
11秒前
丘比特应助科研通管家采纳,获得10
11秒前
Criminology34应助科研通管家采纳,获得10
11秒前
浮游应助科研通管家采纳,获得10
11秒前
李爱国应助科研通管家采纳,获得10
11秒前
小蘑菇应助科研通管家采纳,获得10
11秒前
li应助科研通管家采纳,获得10
11秒前
Hello应助科研通管家采纳,获得10
11秒前
FashionBoy应助科研通管家采纳,获得10
11秒前
浮游应助科研通管家采纳,获得10
11秒前
11秒前
爆米花应助科研通管家采纳,获得10
11秒前
11秒前
11秒前
11秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
The Cambridge History of China: Volume 4, Sui and T'ang China, 589–906 AD, Part Two 1000
The Composition and Relative Chronology of Dynasties 16 and 17 in Egypt 1000
Russian Foreign Policy: Change and Continuity 800
Real World Research, 5th Edition 800
Qualitative Data Analysis with NVivo By Jenine Beekhuyzen, Pat Bazeley · 2024 800
Superabsorbent Polymers 700
热门求助领域 (近24小时)
化学 材料科学 生物 医学 工程类 计算机科学 有机化学 物理 生物化学 纳米技术 复合材料 内科学 化学工程 人工智能 催化作用 遗传学 数学 基因 量子力学 物理化学
热门帖子
关注 科研通微信公众号,转发送积分 5708988
求助须知:如何正确求助?哪些是违规求助? 5191995
关于积分的说明 15255588
捐赠科研通 4861880
什么是DOI,文献DOI怎么找? 2609733
邀请新用户注册赠送积分活动 1560175
关于科研通互助平台的介绍 1517941