RAD: A Statistical Mechanism Based on Behavioral Analysis for DDoS Attack Countermeasure

服务拒绝攻击 计算机科学 应用层DDoS攻击 对策 抖动 符号 计算机安全 算法 人工智能 数学 万维网 互联网 算术 工程类 电信 航空航天工程
作者
Mosayeb Hajimaghsoodi,Rasool Jalili
出处
期刊:IEEE Transactions on Information Forensics and Security [Institute of Electrical and Electronics Engineers]
卷期号:17: 2732-2745 被引量:13
标识
DOI:10.1109/tifs.2022.3172598
摘要

Nowadays, Distributed Denial of Service (DDoS) attacks are among the most prevailing and costly attacks across the networks which challenge a variety of services. While many defense mechanisms are presented to detect and mitigate DDoS attacks, attackers constantly explore alternative approaches for orchestrating novel DDoS attacks. Distribution of the mechanism and its deployment into different zones can improve the accuracy and coverage of DDoS attack varieties. In this paper, we propose a 3-phase DDoS attack countermeasure, named $RAD$ , based on a statistical model for scoring users in order to detect DDoS attacks. In the first phase, users are classified into either suspicious or benign based on their traffic behavior, being indicated by the number of flows, packets, concurrent connections, and amount of user-generated traffic. In the second phase, we identify a potential attack state using the drop, jitter, and delay processing parameters. In the third phase, relevant policies are enforced on the suspicious class of users and its effects are assessed continuously in order to reduce false alarms. $RAD$ is evaluated through the UNB CICDDoS2019 dataset and is compared with four well-known DDoS detection algorithms. $RAD$ counters DDoS attacks with more than 80% precision, 99% recall, and 89% F1-Measure in CICDDoS2019.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
PDF的下载单位、IP信息已删除 (2025-6-4)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
雨田发布了新的文献求助10
1秒前
来篇nature完成签到,获得积分10
1秒前
1秒前
1秒前
包容友儿完成签到,获得积分10
1秒前
菠萝冰棒完成签到,获得积分10
2秒前
lululu发布了新的文献求助100
2秒前
2秒前
ZhaoRongzhe完成签到,获得积分10
2秒前
freebird完成签到,获得积分10
2秒前
汤传麒完成签到,获得积分20
2秒前
Freya完成签到,获得积分10
2秒前
shy完成签到,获得积分10
2秒前
hkp发布了新的文献求助10
2秒前
3秒前
qingmoheng应助anle采纳,获得10
3秒前
科研通AI6应助anle采纳,获得10
3秒前
快乐的妙菱完成签到,获得积分10
3秒前
chen完成签到,获得积分10
3秒前
ws完成签到,获得积分20
3秒前
Werner完成签到 ,获得积分10
4秒前
科研通AI2S应助深情代芙采纳,获得10
4秒前
Orange应助刘博士采纳,获得10
4秒前
4秒前
4秒前
5秒前
我是弱智先帮我完成签到,获得积分10
5秒前
汤传麒发布了新的文献求助10
5秒前
快乐的萝莉完成签到,获得积分10
5秒前
zzz发布了新的文献求助10
5秒前
路途遥远完成签到,获得积分10
6秒前
6秒前
鱼憨儿完成签到,获得积分10
6秒前
6秒前
小唐完成签到,获得积分10
6秒前
bkagyin应助lezard采纳,获得10
7秒前
ZhaoRongzhe发布了新的文献求助10
7秒前
香蕉觅云应助科研废人采纳,获得10
7秒前
无私的迎松完成签到 ,获得积分10
7秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Iron toxicity and hematopoietic cell transplantation: do we understand why iron affects transplant outcome? 2000
Teacher Wellbeing: Noticing, Nurturing, Sustaining, and Flourishing in Schools 1200
List of 1,091 Public Pension Profiles by Region 1021
A Technologist’s Guide to Performing Sleep Studies 500
EEG in Childhood Epilepsy: Initial Presentation & Long-Term Follow-Up 500
Latent Class and Latent Transition Analysis: With Applications in the Social, Behavioral, and Health Sciences 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 生物化学 物理 纳米技术 计算机科学 内科学 化学工程 复合材料 物理化学 基因 遗传学 催化作用 冶金 量子力学 光电子学
热门帖子
关注 科研通微信公众号,转发送积分 5483071
求助须知:如何正确求助?哪些是违规求助? 4583840
关于积分的说明 14392895
捐赠科研通 4513440
什么是DOI,文献DOI怎么找? 2473476
邀请新用户注册赠送积分活动 1459525
关于科研通互助平台的介绍 1433024