Detection of Slow DDoS Attacks based on User’s Behavior Forecasting
Journal: International Journal of Emerging Trends in Engineering Research (IJETER) (Vol.8, No. 5)Publication Date: 2019-10-15
Authors : Vitalii Savchenko Oleh Ilin Nikolay Hnidenko Olga Tkachenko Oleksander Laptiev; Svitlana Lehominova;
Page : 2019-2025
Keywords : individual prediction; random process; slow DDoS attack; user behavior.;
Abstract
The article deals with a problem of detecting low and slow distributed denial of service (DDoS) attacks. It is widely known that the detection of slow DDoS attacks differs significantly from volume based attacks, because slow attacks do not increase the intensity of traffic in the network. An assumption about dependency of slow attack from user's behavior is made. A method for detecting such attacks based on research and forecasting of the individual behavioral trajectory of a particular user is proposed. Possibilities of application of such method are proved on the basis of modeling RUDY attacks to HTTP services. The characteristics of forecasting accuracy depending on the accumulated traffic and attack statistics are shown. It is concluded that such method can be used to detect different types of slow DDoS attacks.
Other Latest Articles
- Effect of Initial Moisture Content on Unconfined Compressive Strength of Cemented-Fiber-Clay
- Determining Changes in Green Cover in Urban Areas
- The Method of ADS-B Receiver Systems Synchronization using MLAT Technologies in the Course of Radar Control of Air Environment
- Design and Performance Evaluation of D-Flip-Flop using Various Technology Nodes
- Generalized Continuous Frames for Operators
Last modified: 2020-06-16 17:26:56