期刊文献+

基于序贯变化检测的DDoS攻击检测方法 被引量:6

DDoS Attacks Detection Based on Sequential Change Detection
下载PDF
导出
摘要 给出了一种有效的DDoS攻击检测方法,将DDoS攻击的检测作为序贯变化检测的一个具体实例来分析,采用序贯变化检测算法——非参数CUSUM算法进行检测。方法具有计算量小、检测迅速准确、适用于不同网络环境和攻击模式的优点,有一定的实用价值。文章最后对两种典型的攻击模式进行了实际检测,全面评估了检测算法在不同DDoS攻击场景下的性能。 This paper presents an effective method to detect DDoS attack by formulating and solving the task as a sequential change point detection problem. It uses non-parametric CUSUM algorithm to complete the detection task of DDoS attacks. The method has several attractive features. First, it has manageable computational complexity. Second, it minimizes the average delay of detection for a given false alarm rate. Third, it is effective in various network conditions. At the end, it demonstrates the efficiency and robustness of the method in various attack scenarios by using simulations.
出处 《计算机工程》 EI CAS CSCD 北大核心 2005年第9期135-137,共3页 Computer Engineering
基金 总装武器装备预研项目
关键词 DDOS攻击 序贯变化检测 非参数CUSUM算法 DDoS attack Sequential change detection N-parametric CUSUM algorithm
  • 相关文献

参考文献6

  • 1Basseville M,Nikiforov I V.Detection of Abrupt Changes : Theory and Application.Prentice Hall,1993
  • 2Jung J,Krishnamurthy B,Rabinovich M.Flash Crowds and Denial of Service Attacks: Characterization and Implications for CDNs and Web Sites.Proceedings of 11th Word Wide Web Conference,Honolulu,Hawaii,USA,2002-05-07
  • 3Brodsky B E,Darkhovsky B S.Nonparametric Methods in Change Point Problems.Kluwer Academic Publishers,1993
  • 4Wang Haining,Zhang Danlu,Shin K G.Detecting SYN Flooding Attacks.In Proceedings of IEEE Infocom'2002,2002-06
  • 5Bellovin B.The ICMP Traceback Message.Internet Draft,IETF,2000-03
  • 6Yau D K Y,Lui J C S,Liang Feng.Defending Against Distributed Denial-of-service Attacks with Max-min Fair Server-centric Router Throttles.In Proceedings of IEEE International Workshop on Quality of Service (IWQoS),Miami Beach,FL,2002-05

同被引文献46

引证文献6

二级引证文献36

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部