Real time DDoS detection using fuzzy estimators

Authors: Shiaeles, S.N., Katos, V., Karakos, A.S. and Papadopoulos, B.K.

Journal: Computers and Security

Volume: 31

Issue: 6

Pages: 782-790

ISSN: 0167-4048

DOI: 10.1016/j.cose.2012.06.002

Abstract:

We propose a method for DDoS detection by constructing a fuzzy estimator on the mean packet inter arrival times. We divided the problem into two challenges, the first being the actual detection of the DDoS event taking place and the second being the identification of the offending IP addresses. We have imposed strict real time constraints for the first challenge and more relaxed constraints for the identification of addresses. Through empirical evaluation we confirmed that the detection can be completed within improved real time limits and that by using fuzzy estimators instead of crisp statistical descriptors we can avoid the shortcomings posed by assumptions on the model distribution of the traffic. In addition we managed to obtain results under a 3 sec detection window. © 2012 Elsevier Ltd. All rights reserved.

Source: Scopus

Preferred by: Vasilis Katos

Real time DDoS detection using fuzzy estimators

Authors: Shiaeles, S.N., Katos, V., Karakos, A.S. and Papadopoulos, B.K.

Journal: COMPUTERS & SECURITY

Volume: 31

Issue: 6

Pages: 782-790

eISSN: 1872-6208

ISSN: 0167-4048

DOI: 10.1016/j.cose.2012.06.002

Source: Web of Science (Lite)