首页> 外文期刊>International Journal of Intelligent Systems and Applications >Fuzzy-based User Behavior Characterization to Detect HTTP-GET Flood Attacks
【24h】

Fuzzy-based User Behavior Characterization to Detect HTTP-GET Flood Attacks

机译:基于模糊的用户行为表征以检测HTTP-GET泛洪攻击

获取原文
           

摘要

Internet was designed to serve the basic requirement of data transfer between systems. The security perspectives were therefore overlooked due to which the Internet remains vulnerable to a variety of attacks. Among all the possible attacks, Distributed Denial of Service (DDoS) attack is one of the eminent threats that target the availability of the online services to the intended clients. Now-a-days, attackers target application layer of the network stack to orchestrate attacks having a high degree of sophistication. GET flood attacks have been very much prevalent in recent years primarily due to advancement of bots allowing impersonating legitimate client behavior. Differentiating between a human client and a bot is therefore necessary to mitigate an attack. This paper introduces a mitigation framework based on Fuzzy Control System that takes as input two novel detection parameters. These detection parameters make use of clients' behavioral characteristic to measure their respective legitimacy. We design an experimental setup that incorporates two widely used benchmark web logs (Clarknet and WorldCup) to build legitimate and attack datasets. Further, we use these datasets to assess the performance of the proposed through well-known evaluation metrics. The results obtained during this work point towards the efficiency of our proposed system to mitigate a wide range of GET flood attack types.
机译:互联网旨在满足系统之间数据传输的基本要求。因此,安全性观点被忽略了,因此,Internet仍然容易受到各种攻击。在所有可能的攻击中,分布式拒绝服务(DDoS)攻击是针对目标客户提供在线服务可用性的重大威胁之一。如今,攻击者将网络堆栈的应用层作为目标,以组织高度复杂的攻击。近年来,GET洪水攻击非常普遍,这主要是由于允许模仿合法客户端行为的漫游器的发展。因此,区分人类客户端和漫游器对于缓解攻击是必要的。本文介绍了一种基于模糊控制系统的缓解框架,该框架以两个新的检测参数为输入。这些检测参数利用客户的行为特征来衡量其各自的合法性。我们设计了一个实验设置,其中包含两个广泛使用的基准Web日志(Clarknet和WorldCup)以构建合法和攻击数据集。此外,我们使用这些数据集通过众所周知的评估指标评估提议的性能。在这项工作中获得的结果表明,我们提出的系统可缓解各种GET洪水攻击类型的效率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号