Fast and lightweight detection and filtering method for low-rate TCP targeted distributed denial of service (LDDoS) attacks
dc.contributor.author | Şimşek, Mehmet | |
dc.contributor.author | Şentürk, Arafat | |
dc.date.accessioned | 2020-05-01T12:10:03Z | |
dc.date.available | 2020-05-01T12:10:03Z | |
dc.date.issued | 2018 | |
dc.department | DÜ, Mühendislik Fakültesi, Bilgisayar Mühendisliği Bölümü | en_US |
dc.description | WOS: 000450984700011 | en_US |
dc.description.abstract | Detection and filtering of low-rate distributed denial of service (LDDoS) attacks is hard since their behavior is similar to legitimate users' behavior. In the literature, there are many filtering approaches and metrics for LDDoS attacks. However, most of the LDDoS detection methods in the literature only monitor congestion state. Actually, precongestion period that the attack has already started has valuable information about the attack. In this study, we proposed a method that uses precongestion period for metric calculation. Also, most of LDDoS filtering approaches have high false-positive and false-negative rates and also require long period of time for detection. Additionally, we developed an efficient method for detection and filtering of LDDoS attacks. According to the experimental results, the proposed LDDoS detection method has zero false-positive and false-negative rates under the scenarios; attack detection time is significantly reduced with using the proposed metric calculation approach. Also, the proposed method has a simple logic, and it requires simple calculations. This increases the applicability of the developed method. | en_US |
dc.identifier.doi | 10.1002/dac.3823 | en_US |
dc.identifier.issn | 1074-5351 | |
dc.identifier.issn | 1099-1131 | |
dc.identifier.issue | 18 | en_US |
dc.identifier.scopusquality | Q2 | en_US |
dc.identifier.uri | https://doi.org/10.1002/dac.3823 | |
dc.identifier.uri | https://hdl.handle.net/20.500.12684/5953 | |
dc.identifier.volume | 31 | en_US |
dc.identifier.wos | WOS:000450984700011 | en_US |
dc.identifier.wosquality | Q3 | en_US |
dc.indekslendigikaynak | Web of Science | en_US |
dc.indekslendigikaynak | Scopus | en_US |
dc.language.iso | en | en_US |
dc.publisher | Wiley | en_US |
dc.relation.ispartof | International Journal Of Communication Systems | en_US |
dc.relation.publicationcategory | Makale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanı | en_US |
dc.rights | info:eu-repo/semantics/closedAccess | en_US |
dc.subject | distributed denial of service attacks | en_US |
dc.subject | internet of things | en_US |
dc.subject | lightweight security | en_US |
dc.subject | network security | en_US |
dc.title | Fast and lightweight detection and filtering method for low-rate TCP targeted distributed denial of service (LDDoS) attacks | en_US |
dc.type | Article | en_US |
Dosyalar
Orijinal paket
1 - 1 / 1
Küçük Resim Yok
- İsim:
- 5953.pdf
- Boyut:
- 770.07 KB
- Biçim:
- Adobe Portable Document Format
- Açıklama:
- Tam Metin / Full Text