首页> 外文会议> >Detection of HTTP-GET flood Attack Based on Analysis of Page Access Behavior
【24h】

Detection of HTTP-GET flood Attack Based on Analysis of Page Access Behavior

机译:基于页面访问行为分析的HTTP-GET Flood攻击检测

获取原文

摘要

Recently, there are many denial-of-service (DoS) attacks by computer viruses or botnet. DoS attacks to web services are called HTTP-GET flood attack and threats of them increase day by day. In this type of attacks, malicious clients send a large number of HTTP-GET requests to the target web server automatically. Since these HTTP-GET requests have legitimate formats and are sent via normal TCP connections, an intrusion detection system (IDS) can not detect them. In this paper, we propose HTTP-GET flood detection techniques based on analysis of page access behavior. We propose two detection algorithms, one is focusing on a browsing order of pages and the other is focusing on a correlation with browsing time to page information size. We implement detection techniques and evaluate attack detection rates, i.e., false positive and false negative. The results show that our techniques can detect the HTTP-GET flood attack effectively.
机译:近期,有许多由计算机病毒或僵尸网络引起的拒绝服务(DoS)攻击。对Web服务的DoS攻击称为HTTP-GET泛洪攻击,它们的威胁每天都在增加。在这种类型的攻击中,恶意客户端会自动将大量HTTP-GET请求发送到目标Web服务器。由于这些HTTP-GET请求具有合法格式并通过常规TCP连接发送,因此入侵检测系统(IDS)无法检测到它们。在本文中,我们基于对页面访问行为的分析,提出了HTTP-GET洪水检测技术。我们提出了两种检测算法,一种专注于页面的浏览顺序,另一种专注于浏览时间与页面信息大小的相关性。我们实施检测技术并评估攻击检测率,即误报和误报率。结果表明,我们的技术可以有效地检测HTTP-GET泛洪攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号