>
Fa   |   Ar   |   En
   F-Stone: A Fast Real-Time Ddos Attack Detection Method Using An Improved Historical Memory Management  
   
نویسنده Nooribakhsh Mahsa ,Mollamotalebi Mahdi
منبع The Isc International Journal Of Information Security - 2020 - دوره : 12 - شماره : 2 - صفحه:113 -128
چکیده    Distributed denial of service (ddos) is a common attack in recent years that can deplete the bandwidth of victim nodes by flooding packets. based on the type and quantity of traffic used for the attack and the exploited vulnerability of the target, ddos attacks are grouped into three categories as volumetric attacks, protocol attacks, and application attacks. the volumetric attack, which the proposed method attempts to detect it, is the most common type of ddos attacks. the aim of this paper is to reduce the delay of real-time detection of ddos attacks utilizing hybrid structures based on data stream algorithms. the proposed data structure (bhm1 ) improves the data storing mechanism presented in the stone method and consequently reduces the detection time. stone characterizes regular network traffic of a service by aggregating it into common prefixes of ip addresses, and detecting attacks when the aggregated traffic deviates from the regular one. in bhm, history refers to the output traffic information obtained from each monitoring period to form a reference profile. the reference profile is created by employing historical information and only includes normal traffic information. the delay of ddos attack detection increases in stone due to long-time intervals between each monitoring period. the proposed method (f-stone) has been compared to stone based on attack detection time, expected profile update time (eput), and rate of attack detection. the evaluation results indicated significant improvements in terms of the eput, acceleration of attack detection, and reduction of false positive rate.
کلیدواژه Ddos Detection ,Real-Time Detection ,Datastream Algorithm ,Binary-Mapped Historical-Memory Management ,Anomaly Detection ,Expected Profile Update Time
آدرس Islamic Azad University, Buinzahra Branch, Department Of Computer, Iran, Islamic Azad University, Buinzahra Branch, Department Of Computer, Iran
پست الکترونیکی motalebi@qiau.ac.ir
 
     
   
Authors
  
 
 

Copyright 2023
Islamic World Science Citation Center
All Rights Reserved