Fast and Lightweight Detection and Filtering Method for Low-rate TCP Targeted Distributed Denial of Service (LDDoS) Attacks
Yazarlar (2)
Prof. Dr. Mehmet ŞİMŞEK Düzce Üniversitesi, Türkiye
Doç. Dr. Arafat Şentürk Düzce Üniversitesi, Türkiye
Makale Türü Özgün Makale (SSCI, AHCI, SCI, SCI-Exp dergilerinde yayınlanan tam makale)
Dergi Adı International Journal of Communication Systems (Q3)
Dergi ISSN 1074-5351 Dergi Bilgileri (2018)
Dergi Tarandığı Indeksler SCI-Expanded
Makale Dili İngilizce Basım Tarihi 12-2018
Kabul Tarihi 02-09-2018 Yayınlanma Tarihi 15-10-2018
Cilt / Sayı / Sayfa 31 / 18 / 3823–0 DOI 10.1002/dac.3823
Makale Linki http://doi.wiley.com/10.1002/dac.3823
UAK Araştırma Alanları
Algoritmalar ve Hesaplama Kuramı
Özet
Detection and filtering of low‐rate distributed denial of service (LDDoS) attacks is hard since their behavior is similar to legitimate users' behavior. In the literature, there are many filtering approaches and metrics for LDDoS attacks. However, most of the LDDoS detection methods in the literature only monitor congestion state. Actually, precongestion period that the attack has already started has valuable information about the attack. In this study, we proposed a method that uses precongestion period for metric calculation. Also, most of LDDoS filtering approaches have high false‐positive and false‐negative rates and also require long period of time for detection. Additionally, we developed an efficient method for detection and filtering of LDDoS attacks. According to the experimental results, the proposed LDDoS detection method has zero false‐positive and false‐negative rates under the scenarios; attack detection …
Anahtar Kelimeler
distributed denial of service attacks | internet of things | lightweight security | network security