Chrome Extension
WeChat Mini Program
Use on ChatGLM

A Detection and Offense Mechanism to Defend Against Application Layer DDoS Attacks

Athens(2007)

Cited 83|Views5
No score
Abstract
Application layer DDoS attacks, which are legitimate in packets and protocols, gradually become a pressing problem for commerce, politics and military. We build an attack model and characterize layer-7 attacks into three classes: session flooding attacks, request flooding attacks and asymmetric attacks. We proposed a mechanism named as DOW (Defense and Offense Wall), which defends against layer-7 attacks using combination of detection technology and currency technology. An anomaly dete-ction method based on K-means clustering is introduced to detect and filter request flooding attacks and asymmetric attacks. To defend against session-flooding attacks, we propose an encoura-gement model that uses client's session rate as currency. Dete-ction model drops suspicious sessions, while currency model encourages more legitimate sessions. By collaboration of these two models, normal clients could gain higher service rate and lower delay of response time.
More
Translated text
Key words
k-means,offense mechanism,encouragement,application layer ddos attacks,- ddos attacks,session flooding attack,request flooding attack,dete-ction model,layer-7 attack,detection technology,currency,asymmetric attack,detection,encoura-gement model,currency model,attack model,currency technology,protocols,k means clustering,k means,business,ddos attack,pressing,security,application software
AI Read Science
Must-Reading Tree
Example
Generate MRT to find the research sequence of this paper
Chat Paper
Summary is being generated by the instructions you defined