作者
Shui Yu, Wanlei Zhou, Weijia Jia, Song Guo, Yong Xiang, Feilong Tang
发表日期
2011/10/25
期刊
IEEE transactions on parallel and distributed systems
卷号
23
期号
6
页码范围
1073-1080
出版商
IEEE
简介
Distributed Denial of Service (DDoS) attack is a critical threat to the Internet, and botnets are usually the engines behind them. Sophisticated botmasters attempt to disable detectors by mimicking the traffic patterns of flash crowds. This poses a critical challenge to those who defend against DDoS attacks. In our deep study of the size and organization of current botnets, we found that the current attack flows are usually more similar to each other compared to the flows of flash crowds. Based on this, we proposed a discrimination algorithm using the flow correlation coefficient as a similarity metric among suspicious flows. We formulated the problem, and presented theoretical proofs for the feasibility of the proposed discrimination method in theory. Our extensive experiments confirmed the theoretical analysis and demonstrated the effectiveness of the proposed method in practice.
引用总数
2012201320142015201620172018201920202021202220232024315303741293229263013103
学术搜索中的文章
S Yu, W Zhou, W Jia, S Guo, Y Xiang, F Tang - IEEE transactions on parallel and distributed systems, 2011