Title
A novel technique for detecting DDoS attacks at its early stage
Abstract
Spoofing source IP addresses is always utilized to perform Distributed Denial-of-Service (DDoS) attacks. Most of current detection and prevention methods against DDoS ignore the innocent side, whose IP is utilized as the spoofed IP by the attacker. In this paper, a novel method has been proposed to against the direct DDoS attacks, which consists of two components: the client detector and the server detector. The cooperation of those two components and their interactive behavior lead to an early stage detection of a DDoS attack. From the result of experiments, the approach presented in this paper yields accurate DDoS alarms at early stage. Furthermore, such approach is insensitive to the false suspect alarms with adopted evaluation functions.
Year
DOI
Venue
2004
10.1007/978-3-540-30566-8_96
ISPA
Keywords
Field
DocType
novel technique,current detection,spoofed ip,ddos attack,early stage detection,early stage,paper yields accurate ddos,direct ddos attack,server detector,client detector,spoofing source ip address,distributed denial of service,evaluation function
Bloom filter,Internet Protocol,False alarm,Spoofing attack,Denial-of-service attack,Computer science,Real-time computing,Transmission Control Protocol,Constant false alarm rate,Application layer DDoS attack
Conference
Volume
ISSN
ISBN
3358
0302-9743
3-540-24128-0
Citations 
PageRank 
References 
1
0.37
12
Authors
3
Name
Order
Citations
PageRank
Bin Xiao11763129.31
Wei Chen28612.45
Yanxiang He356868.23