首页> 外文会议>2011 Sixth International Conference on Availability, Reliability and Security >Parametric Differences between a Real-world Distributed Denial-of-Service Attack and a Flash Event
【24h】

Parametric Differences between a Real-world Distributed Denial-of-Service Attack and a Flash Event

机译:实际的分布式拒绝服务攻击与Flash事件之间的参数差异

获取原文

摘要

Distributed Denial-of-Service (DDoS) attacks continue to be one of the most pernicious threats to the delivery of services over the Internet. Not only are DDoS attacks present in many guises, they are also continuously evolving as new vulnerabilities are exploited. Hence accurate detection of these attacks still remains a challenging problem and a necessity for ensuring high-end network security. An intrinsic challenge in addressing this problem is to effectively distinguish these Denial-of-Service attacks from similar looking Flash Events (FEs) created by legitimate clients. A considerable overlap between the general characteristics of FEs and DDoS attacks makes it difficult to precisely separate these two classes of Internet activity. In this paper we propose parameters which can be used to explicitly distinguish FEs from DDoS attacks and analyse two real-world publicly available datasets to validate our proposal. Our analysis shows that even though FEs appear very similar to DDoS attacks, there are several subtle dissimilarities which can be exploited to separate these two classes of events.
机译:分布式拒绝服务(DDoS)攻击仍然是通过Internet提供服务的最有害的威胁之一。 DDoS攻击不仅以多种形式存在,而且随着利用新漏洞的不断发展。因此,准确检测这些攻击仍然是一个具有挑战性的问题,并且是确保高端网络安全性的必要条件。解决此问题的一个内在挑战是如何有效地将这些拒绝服务攻击与合法客户端创建的外观相似的Flash事件(FE)区别开来。 FE和DDoS攻击的一般特征之间存在相当大的重叠,这使得很难准确区分这两种Internet活动。在本文中,我们提出了可用于将FE与DDoS攻击区分开来的参数,并分析了两个现实世界中公开可用的数据集以验证我们的提议。我们的分析表明,即使有限元看上去与DDoS攻击非常相似,也可以利用一些细微的差异来区分这两类事件。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号