【24h】

STATISTICAL SIGNATURES FOR EARLY DETECTION OF FLOODING DENIAL-OF-SERVICE ATTACKS

机译:提前检测出拒绝服务攻击的统计信号

获取原文
获取原文并翻译 | 示例

摘要

A major threat to the information economy is denial-of-service attacks. Despite the widespread deployment of perimeter model countermeasures these attacks are highly prevalent. Therefore a new approach is posited; early detection. This paper posits an approach that utilises statistical signatures at the router to provide early detection of flooding denial-of-service attacks. The advantages of the approach presented in this paper are threefold: analysing fewer packets reduces computational load on the defence mechanism; no state information is required about the systems under protection; and alerts may span many attack packets. Thus, the defence mechanism may be placed within the routing infrastructure to prevent malicious packets from reaching their intended victim in the first place. This paper presents an overview of the early detection-enabled router algorithm and case study results.
机译:对信息经济的主要威胁是拒绝服务攻击。尽管外围模型对策已广泛部署,但这些攻击仍然非常普遍。因此提出了一种新方法。早期发现。本文提出了一种利用路由器上的统计签名来提供对洪泛拒绝服务攻击的早期检测的方法。本文提出的方法的优点有三方面:分析较少的数据包可减少防御机制的计算负担;不需要有关受保护系统的状态信息;并且警报可能会跨越许多攻击数据包。因此,可以将防御机制放置在路由基础结构中,以防止恶意数据包首先到达其预期的受害者。本文概述了支持早期检测的路由器算法和案例研究结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号