A New Detection Method based on AEWMA Algorithm for LDoS attacks
نویسندگان
چکیده
The Low-rate Denial of Service (LDoS) attack is a new type of DoS (Denial of Service) attack, which produces the similar harmful effect as the DoS attack. It is more difficult for existing DoS detection methods to detect the LDoS attacks because of their distinct characteristics, at the same time the accuracy of the current detection methods for the LDoS attacks is relatively low. However, when the LDoS attacks occur, the characteristics of the ACK traffic have special changes. As the fact that the LDoS attacks led to abnormal traffic and abnormal distribution of the ACK traffic, a new LDoS detection method is proposed based on coefficient of variation and AEWMA algorithm by measuring the abnormal characteristics of the ACK traffic. The NS2 simulations show that this method can detect LDoS attacks effectively with a low false-negative rate and falsepositive rate. Based on LBNL Datasets and MAWI Datasets, the experiment results show that this method is more efficient than the EWMA method.
منابع مشابه
A New Collaborative Detection Method for LDoS Attacks
The Low-rate Denial of Service (LDoS) attacks reduce network services capabilities by periodically sending high intensity pulse data flows. For the hidden performance of LDoS attacks, it is more difficult for traditional DoS detection methods to detect. At the same time the accuracy of the current detection methods for the LDoS attacks is relatively low. However, when the LDoS attacks occur, th...
متن کاملA Novel Hybrid Approach for Email Spam Detection based on Scatter Search Algorithm and K-Nearest Neighbors
Because cyberspace and Internet predominate in the life of users, in addition to business opportunities and time reductions, threats like information theft, penetration into systems, etc. are included in the field of hardware and software. Security is the top priority to prevent a cyber-attack that users should initially be detecting the type of attacks because virtual environments are not moni...
متن کاملMSABMS-based approach of detecting LDoS attack
Low-rate Denial of Service (LDoS) attacks exploit the deficiencies of the minimum RTO of TCP to send out attack packets in short-duration periodic pulses with low average volume traffic in order to throttle TCP throughput. It is hard to detect an LDoS attack by most available detection schemes, which are triggered by high-rate traffic based on time average statistics. In this paper, the method ...
متن کاملLow Rate Denial of Service (LDoS) attack – A Survey
Denial Of service (DoS) attacks has become a major problem to intranet and Internet services. DoS attacks can be detected and eliminated using existing efficient Active Queue Management (AQM) schemes like RED. A new kind of DoS attacks have become more common in today’s Transmission control protocol (TCP) services, i.e., Low Rate Denial of Service (LDoS) attacks. LDoS attacks will degrade the p...
متن کاملA New Method for Intrusion Detection Using Genetic Algorithm and Neural network
Abstract— In order to provide complete security in a computer system and to prevent intrusion, intrusion detection systems (IDS) are required to detect if an attacker crosses the firewall, antivirus, and other security devices. Data and options to deal with it. In this paper, we are trying to provide a model for combining types of attacks on public data using combined methods of genetic algorit...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
- JNW
دوره 9 شماره
صفحات -
تاریخ انتشار 2014