tailieunhanh - Báo cáo hóa học: " Research Article Detecting Pulsing Denial-of-Service Attacks with Nondeterministic Attack Intervals"

Tuyển tập báo cáo các nghiên cứu khoa học quốc tế ngành hóa học dành cho các bạn yêu hóa học tham khảo đề tài: Research Article Detecting Pulsing Denial-of-Service Attacks with Nondeterministic Attack Intervals | Hindawi Publishing Corporation EURASIP Journal on Advances in Signal Processing Volume 2009 Article ID 256821 13 pages doi 2009 256821 Research Article Detecting Pulsing Denial-of-Service Attacks with Nondeterministic Attack Intervals Xiapu Luo Edmond W. W. Chan and Rocky K. C. Chang Department of Computing The Hong Kong Polytechnic University Hung Hom Kowloon SAR Hong Kong Correspondence should be addressed to Rocky K. C. Chang csrchang@ Received 14 April 2008 Revised 29 October 2008 Accepted 21 January 2009 Recommended by Chin-Tser Huang This paper addresses the important problem of detecting pulsing denial of service PDoS attacks which send a sequence of attack pulses to reduce TCP throughput. Unlike previous works which focused on a restricted form of attacks we consider a very broad class of attacks. In particular our attack model admits any attack interval between two adjacent pulses whether deterministic or not. It also includes the traditional flooding-based attacks as a limiting case . zero attack interval . Our main contribution is Vanguard a new anomaly-based detection scheme for this class of PDoS attacks. The Vanguard detection is based on three traffic anomalies induced by the attacks and it detects them using a CUSUM algorithm. We have prototyped Vanguard and evaluated it on a testbed. The experiment results show that Vanguard is more effective than the previous methods that are based on other traffic anomalies after a transformation using wavelet transform Fourier transform and autocorrelation and detection algorithms . dynamic time warping . Copyright 2009 Xiapu Luo et al. This is an open access article distributed under the Creative Commons Attribution License which permits unrestricted use distribution and reproduction in any medium provided the original work is properly cited. 1. Introduction Traditional denial-of-service DoS attacks are floodingbased DoS FDDoS which overwhelm a victim with a constant rate of .

TÀI LIỆU LIÊN QUAN