Fast Detection and Mitigation to DDoS Web Attack Based on Access Frequency
Title | Fast Detection and Mitigation to DDoS Web Attack Based on Access Frequency |
Publication Type | Conference Paper |
Year of Publication | 2019 |
Authors | Tran, Thang M., Nguyen, Khanh-Van |
Conference Name | 2019 IEEE-RIVF International Conference on Computing and Communication Technologies (RIVF) |
Keywords | access frequency, attack packets, Botnet, composability, Computer crime, data structures, DDoS attack detection, DDoS attack mitigation, DDoS Attacks, DDoS Detection and Mitigation, DDoS Web attack, hacker botnets, Human Behavior, immediate defense mechanism, Internet, IP networks, Metrics, Processing time, Protocols, pubcrawl, realtime attack response, Resiliency, security of data, storage space, Time-frequency Analysis, Web applications, Web request, Web servers |
Abstract | We have been investigating methods for establishing an effective, immediate defense mechanism against the DDoS attacks on Web applications via hacker botnets, in which this defense mechanism can be immediately active without preparation time, e.g. for training data, usually asked for in existing proposals. In this study, we propose a new mechanism, including new data structures and algorithms, that allow the detection and filtering of large amounts of attack packets (Web request) based on monitoring and capturing the suspect groups of source IPs that can be sending packets at similar patterns, i.e. with very high and similar frequencies. The proposed algorithm places great emphasis on reducing storage space and processing time so it is promising to be effective in real-time attack response. |
DOI | 10.1109/RIVF.2019.8713762 |
Citation Key | tran_fast_2019 |
- internet
- Web servers
- Web request
- web applications
- Time-frequency Analysis
- storage space
- security of data
- Resiliency
- realtime attack response
- pubcrawl
- Protocols
- Processing time
- Metrics
- IP networks
- access frequency
- immediate defense mechanism
- Human behavior
- hacker botnets
- DDoS Web attack
- DDoS attack mitigation
- DDoS Detection and Mitigation
- DDoS Attacks
- DDoS attack detection
- data structures
- Computer crime
- composability
- botnet
- attack packets