Computer Engineering & Science >
An Approach of Detecting Distributed LowRate DoS Attack Based on the Congestion Participation Rate
Received date: 2009-04-13
Revised date: 2009-07-10
Online published: 2010-06-22
Distributed Lowrate DenialofService attacks (DLDoS) exploit the vulnerability of the adaptive behaviours exhibited by network protocols and network services. Its attack efficiency and ability of concealment are far higher than the traditional floodingbased DDoS attacks, thus it is harder to detect and defense. In this paper, we first model and formalize the DLDoS attacks, and then propose an approach of detecting DLDoS based on the congestion participation rate (CPR). Experiments and analysis demonstrate that the approach can detect the DLDoS attacks accurately and reduce the false alarm rate drastically.
ZHANG Changwang1,YIN Jianping1,CAI Zhiping1,ZHU En1,CHENG Jieren1,2 . An Approach of Detecting Distributed LowRate DoS Attack Based on the Congestion Participation Rate[J]. Computer Engineering & Science, 2010 , 32(7) : 49 -52 . DOI: 10.3969/j.issn.1007130X.2010.
/
| 〈 |
|
〉 |